CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

GHSA-x8hx-rhr2-9rf7: DNS Rebinding in Paperclip Local Mode

August 5, 2026

A high-severity flaw in Paperclip's local_trusted mode allows DNS rebinding attacks to execute commands on the developer's machine with CVSS 9.6. Fixed by hostname validation in v2026.416.0.