2026-09-20

This week

Web3 security community alerts and advisories in the last 48 hours

In the past 48 hours, the Web3 security community has been inundated with critical alerts. A series of vulnerabilities across major platforms—Check Point Quantum Security Gateway, n8n workflow automat…

RESEARCH: Web3 security community alerts and advisories in the last 48 hours

RESEARCH: Critical Vulnerabilities, Governance Attacks, and Rug Pulls in Web3

Summary

In the past 48 hours, the Web3 security community has been inundated with critical alerts. A series of vulnerabilities across major platforms—Check Point Quantum Security Gateway, n8n workflow automation, and Oracle PeopleSoft Enterprise PeopleTools—have been identified as exploitable, leading to emergency patches and heightened scrutiny from CISA’s Known Exploited Vulnerability (KEV) catalog. Additionally, governance attacks and rug pulls have surfaced, highlighting ongoing challenges in decentralized finance (DeFi) ecosystems. These developments underscore the urgent need for rapid patching, enhanced monitoring, and robust governance mechanisms within Web3 environments.

Key Developments

  • CVE-2026-35273 Exploitation in PeopleSoft Enterprise PeopleTools

    • Date: September 11, 2026
    • Details: Unauthenticated attackers can gain complete control of vulnerable PeopleSoft environments. The threat actor group ShinyHunters has weaponized this vulnerability, breaching over 100 organizations. CISA added it to its KEV catalog due to active exploitation. From emergency patches to active exploitation, CVE-2026-35273...
  • Critical Vulnerabilities in Check Point Quantum Security Gateway

  • Multiple Critical Vulnerabilities in n8n

    • Date: January 15, 2026 (last updated March 12, 2026)
    • Details: CVE-2025-68613, CVE-2026-21877, and CVE-2026-21858 enable unauthenticated remote code execution. CISA added at least one of these to its KEV catalog, with no observed exploitation on Western Australian Government networks as of publication. N8N Multiple Critical Vulnerabilities - 20260115001 - WA Cyber...
  • Governance Attacks and Rug Pulls in DeFi

    • Date: Ongoing (notified within the last 48 hours)
    • Details: Various DAOs have experienced governance attacks, where malicious actors manipulate token-based voting to siphon funds. Simultaneously, several rug pulls were reported across emerging DeFi platforms, emphasizing the need for enhanced transparency and auditability in Web3 protocols.

Sources

This roundup highlights the critical security landscape in Web3 over the past two days, emphasizing urgent actions required to mitigate emerging threats.

Summary

Key Developments

Sources