21 zero-days in FFmpeg, an 18-year-old NGINX hole: depthfirst targets the unguarded open-source floor

ccerrato147 · x · 2026-09-19

ccerrato147 points to a pattern: 21 zero-days in FFmpeg, an 18-year-old hole in NGINX, and a TikTok vulnerability traced to an open-source dependency — all in the same unguarded 'floor' nobody is paid to inspect. depthfirst, whose base model is publicly downloadable, is filling that gap.

Original post →

More from Safety

Safety channel →