🚨 New Next.js CVE: CVE-2026-44578.
High-severity SSRF via WebSocket Upgrade handling in self-hosted Next.js apps using the built-in Node.js server.
Unauthenticated. Network-reachable. CVSS 8.6 High.
Vercel-hosted deployments are not affected.
If you run Next.js on your own infra, read on 🧵
Just got a CVE assigned: CVE-2026-6379
Found an unauthenticated SQL injection in WP Photo Album Plus (< 9.1.11.001). CVSS 8.6 Pre-auth, no creds needed. Verified by @_WPScan_.
Patch is out, update now.
https://t.co/BT1CCvKofo
This is the biggest announcement I've made in the history of the company
In 2010 we started Freepik. Today, what we built has outgrown that name.
It's time we change that. We are Magnific
Proud moment at @rootedcon 🚀
A few of us from @freepik just landed on the leaderboard of the @intigriti Live Hacking Event — and even got an extra bonus for making it there!
Always fun to push skills together with the team.
@alvarodh5@Julioxus@bertrandlorente
The future of advertising is already here.
Alain Afflelou’s new TV commercial is the first in Spain produced entirely with AI on @Freepik. Last wave of tech changed the way we distribute ads, we're changing the way they are created.
Congratulations to @xiaolongbaoes, @ambitos, @Delachica_, and Valentina Roteda for leading the way, and kudos on the great result!
- He usado Google VEO3 desde @freepik
- El crack de @javilop me ha dado mil consejos para tener mejores resultados.
- Hay varias cosas que me han sorprendido! La voz en español (se puede ajustar mas y elegir acentos y tonos). Pero lo que MÁS me ha sorprendido y nunca se habia podido hacer antes es la consistencia de personajes (la niña del primer y ultimo clip es igual)
- Esto no se podia hacer antes, ya que el video que habeis visto esta compuesto por clips de 8 segundos, que es lo maximo que hace VEO3. Pero cuando se puedan hacer mas largos será mucho mas facil!
- Se pueden hacer dibujos estilo pixar pero tambien humanos.
In the workshop room, Ale Palma, Cloud Architect at Freepik, Shu Zhao and David Yangbing Li, from WaveSpeed, dive into how to keep AI fast under heavy loads
They’re sharing real-world strategies behind handling 2M+ inferences per day, and how optimized models make this possible
What happens when AI meets design at scale?
Joaquín Cuenca @cuenca, CEO of @Freepik, opens #UpscaleConf with "AI’s impact on how we design"
With 300M assets and 150M users, Freepik is reshaping creative workflows with AI at the core
Freepik es, ahora mismo, la empresa de software más relevante de España. No solo por tamaño, sino por factores que la hacen única y capaz de competir en innovación con los grandes. Abro hilo y lo explico 👇
🏆My First CVEs! | IDOR & XSS in H6Web
Exciting news! 🚀 I got my first CVEs!
🔴 CVE-2025-1270 (IDOR)
🔴 CVE-2025-1271 (XSS)
🔗🇬🇧 Read more: https://t.co/SPL0K6sl0m
🔗🇪🇸 Más información: https://t.co/E5bK45GdtT
UPDATE 🚀 nomore403 v1.1.0 is out! Including new features and updates to tackle those annoying 403 errors easier than ever.
Check out the full release notes and download now 👇https://t.co/KevwU3KWTU
Just getting started on @yeswehack and already found an Insecure Direct Object Reference (IDOR) (CWE-639) vulnerability! 🛡️ Severity: Medium. Excited to dive deeper into bug bounty hunting.
https://t.co/6fl5b5lKro
#BugBounty#YesWeRHackers#InfoSec#EthicalHacking
Just getting started on @yeswehack and already found an Insecure Direct Object Reference (IDOR) (CWE-639) vulnerability! 🛡️ Severity: Medium. Excited to dive deeper into bug bounty hunting.
https://t.co/6fl5b5lKro
#BugBounty#YesWeRHackers#InfoSec#EthicalHacking
let's make this the best gen-ai conference in Europe. Sunny weather in late November, check. Great panelists, check. Hot topics, check. So looking forward to this!