Hacker News
new
top
best
ask
show
job
Dolibarr 23.0.0: PHP eval() whitelist bypass → RCE via two bugs (CVE-2026-22666)
(
jivasecurity.com
)
2 points
by
jiva
4 hours ago
1 comment
jiva
4 hours ago
Root cause analysis and full PoC. Coordinated disclosure — patch is available as of 4/4/2026