Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
Dolibarr 23.0.0: PHP eval() whitelist bypass → RCE via two bugs (CVE-2026-22666) | Better HN
Dolibarr 23.0.0: PHP eval() whitelist bypass → RCE via two bugs (CVE-2026-22666)
(opens in new tab)
(jivasecurity.com)
2 points
jiva
29d ago
1 comments
Share
1 comments
default
newest
oldest
jiva
OP
29d ago
Root cause analysis and full PoC. Coordinated disclosure — patch is available as of 4/4/2026
j
/
k
navigate · click thread line to collapse