A now-patched critical session isolation flaw was found in the enterprise generative-AI platform Writer. It could have let agent previews leak session tokens, enabling cross-tenant compromise.

A critical security vulnerability in the enterprise generative AI platform Writer has been patched, addressing a flaw that could have allowed agent previews to leak session tokens and potentially lead to cross-tenant compromise. The issue, identified as a session isolation flaw, posed a significant risk to organizations utilizing the platform for their AI-driven operations.
The vulnerability specifically targeted the mechanism by which agent previews were generated and displayed within the Writer platform. In an enterprise setting, multiple tenants, representing different organizations or departments, often share the same platform instance. This shared environment necessitates robust isolation to prevent data or access leakage between these tenants.
The flaw allowed for the potential exfiltration of session tokens. Session tokens are credentials that authenticate a user's ongoing interaction with a system. If an attacker could obtain a session token belonging to a user in one tenant, they might be able to impersonate that user and gain unauthorized access to that tenant's data and resources.
The cross-tenant compromise aspect of this vulnerability is particularly concerning. It implies that an attacker, potentially originating from a less secure tenant or by exploiting this specific flaw, could have gained access to the data or functionalities of a different, unrelated tenant. This would represent a severe breach of data privacy and security for the affected organizations.
While the exact technical details of how the session tokens were leaked through agent previews were not disclosed, the nature of the vulnerability points to a failure in the platform's security controls designed to maintain strict separation between tenant environments. Such failures can arise from programming errors, misconfigurations, or insufficient validation of user inputs or system outputs.
Writer, as an enterprise-focused generative AI platform, handles sensitive business data and proprietary information. The compromise of such a platform could have far-reaching consequences, including intellectual property theft, exposure of confidential communications, and disruption of business operations.
Following the discovery of the vulnerability, the Writer security team acted swiftly to develop and deploy a patch. Users of the Writer platform are strongly advised to ensure their systems are updated to the latest version to incorporate these security fixes. Maintaining up-to-date software is a fundamental aspect of cybersecurity hygiene and is crucial for protecting against known vulnerabilities.
Organizations using enterprise AI platforms should regularly review their security configurations and ensure that vendor patches are applied promptly. Furthermore, implementing robust access controls, monitoring for suspicious activity, and conducting regular security audits can help mitigate the risks associated with sophisticated threats targeting shared enterprise platforms.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.