{"ok":true,"trend":{"id":413621,"platform":"mastodon","region":"global","key":"🚨 euvd-2026-62467 📊 score: 6.8/10 (cvss v3.1) 📦 product: renovate 🏢 vendor: renovatebot 📅 published: 2026-08-19 | update","title":"🚨 EUVD-2026-62467 📊 Score: 6.8/10 (CVSS v3.1) 📦 Product: renovate 🏢 Vendor: renovatebot 📅 Published: 2026-08-19 | Update","url":"https://mastodon.social/@EUVD_Bot/117356817744581787","first_seen":"2026-09-29T23:11:49.739566Z","last_seen":"2026-09-29T23:11:49.739566Z","last_rank":12,"peak_rank":12,"last_volume":0,"peak_volume":0,"seen_count":1,"score":5.28625,"category_hint":"cybersecurity","section":"technology","category":"cybersecurity","summary":"A medium-severity vulnerability, tracked as EUVD-2026-62467 with a CVSS score of 6.8, was disclosed in Renovate, the dependency update tool maintained by renovatebot. Versions from 43.65.0 before 43.102.11 contain a remote code execution flaw affecting the bazel-module and bazelisk managers. The advisory was published on 19 August 2026 and updated on 29 September, and administrators are urged to upgrade to a fixed release.","why":"Security teams are reacting to the advisory and checking whether their Renovate deployments run an affected version.","tone":"neutral","entities":["Renovate","renovatebot","EUVD-2026-62467","Bazel"],"summarized_at":"2026-09-29T23:12:52.173794Z","meta":{"tag":"infosec","via":"scan","kind":"status","lang":"en","instance":"mastodon.social","tag_uses":1748},"nw":null,"promo":null,"kind":null,"importance":null,"hidden":false,"hide_reason":null,"judged_at":null,"title_en":"Renovate tool patched over remote code execution flaw","section_name":"Technology","category_name":"Cybersecurity","timeline":[{"captured_at":"2026-09-29T23:11:49.739566Z","rank":12,"volume":0}],"posts":[{"platform":"mastodon","url":"https://mastodon.social/@EUVD_Bot/117356817744581787","author":"EUVD_Bot","title":null,"snippet":"🚨 EUVD-2026-62467 📊 Score: 6.8/10 (CVSS v3.1) 📦 Product: renovate 🏢 Vendor: renovatebot 📅 Published: 2026-08-19 | Updated: 2026-09-29 📝 Renovate versions from 43.65.0 before 43.102.11 contain a remote code execution vulnerability in bazel-module and bazelisk managers when using…","posted_at":"2026-09-29T23:02:07.013000Z","likes":0}],"elsewhere":[],"window":"7d"}}