chiprook
← Security
SecurityOctober 3, 2026, 22:27

Anthropic's Mythos AI found a critical Rejetto HFS flaw now under active exploitation

Anthropic's bug-hunting model Mythos uncovered CVE-2026-61500, a critical authentication-bypass flaw in the open-source Rejetto HTTP File Server that allows full admin access and remote code execution. VulnCheck detected exploitation attempts the next day from a China-based IP targeting hosts in the US and Japan. The fix is available in HFS v3.2.1 or later.

Anthropic's Mythos AI found a critical Rejetto HFS flaw now under active exploitation
#Anthropic#Rejetto#Mythos
Read next
Security

Three Artifactory flaws under active exploitation allow auth bypass and admin access

Security

Actively exploited VeloCloud Orchestrator flaw patched only in some versions

Security

CISA Adds Actively Exploited Zyxel Switch Flaw to KEV Catalog

Security

Acronis warns of actively exploited flaw in its cPanel backup plugin