Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-47176 | duck-organization quest-bot up to 1.0.3 information disclosure (GHSA-fvvp-8g5q-hrc7 / EUVD-2026-36276)
A vulnerability identified as problematic has been detected in duck-organization quest-bot up to 1.0.3. The impacted element is an unknown function. The…
A vulnerability identified as problematic has been detected in duck-organization quest-bot up to 1.0.3. The impacted element is an unknown function. The manipulation leads to information disclosure.
This vulnerability is documented as CVE-2026-47176. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
This vulnerability is documented as CVE-2026-47176. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
CISA-SSVC-Triage (vulnrichment)CVE-2026-47176
Exploitation: poc (PoC verfügbar)Automatable: no (Nicht automatisierbar)Technical Impact: partial (Teilweise)
Quelle: CISA-ADP vulnrichment · Stand 2026-06-11T19:01:12.811841Z · CISA Coordinator
Advisory Radar
In herstellerseitiger Prüfung
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com