Announcements

Mozilla Firefox Security Updates – 14 January 2026

Mozilla has released an updated Firefox version 147, Firefox ESR versions 115.32, and 140.7 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, corrupt memory, perform denial of service attacks, obtain sensitive information, execute arbitrary code, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. […]

Mozilla Firefox Security Updates – 14 January 2026 Read More »

Fortinet Security Updates – 14 January 2026

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, gain elevated privileges, perform denial of service attacks, conduct SQL injection attacks, delete arbitrary files, and abuse internal services via serverside request forgery attacks, or execute arbitrary commands/code and gain access

Fortinet Security Updates – 14 January 2026 Read More »

SAP Security Patch Day January 2026

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products, such as SAP S/4HANA Private Cloud and On-Premise (Financials – General Ledger), SAP Wily Introscope Enterprise Manager (WorkStation), SAP S/4HANA (Private Cloud and On-Premise), SAP Landscape Transformation, SAP HANA

SAP Security Patch Day January 2026 Read More »

Trend Micro Security Update – 08 January 2026

Trend Micro has released security updates to address several vulnerabilities affecting Trend Micro Apex Central (On-prem) 2019 versions below Build 7190. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and perform denial of service attacks (DoS) on the affected product. Sample of addressed vulnerabilities: 1. Trend Micro Apex Central LoadLibraryEX Remote

Trend Micro Security Update – 08 January 2026 Read More »

Veeam Security Update – 08 January 2026

Veeam has released a security update to fix multiple vulnerabilities across Veeam Backup & Replication 13.0.1.180 and all earlier versions of 13 builds. The addressed vulnerabilities could allow the remote attacker to gain elevated privileges, manipulate files, execute arbitrary code, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Veeam Backup

Veeam Security Update – 08 January 2026 Read More »

Aruba Security Update – 22 December 2025

HPE Aruba has released a security update to address a critical vulnerability affecting HPE OneView software versions before 11.00. The addressed vulnerability could allow the unauthenticated remote attacker to execute arbitrary code and gain access to the affected system. HPE OneView Remote Code Execution Vulnerability (CVE-2025-37164): CVSS: 10.0 Attack Vector: Network Attack Complexity: Low Privileges

Aruba Security Update – 22 December 2025 Read More »

Cisco Security Updates – 18 December 2025

Cisco has released security updates to fix several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to conduct cross-site scripting attacks, obtain sensitive information, or execute arbitrary commands and gain access to the affected product. Sample of addressed vulnerabilities: 1. Cisco Multiple Products Improper Input Validation Vulnerability (CVE-2025- 20393): CVSS: 10

Cisco Security Updates – 18 December 2025 Read More »

Ivanti Security Update – 10 December 2025

Ivanti has released a security update to fix multiple vulnerabilities across Ivanti Endpoint Manager (EPM). The addressed vulnerabilities could allow the attacker to perform cross-site scripting attacks, manipulate data, or execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Ivanti Endpoint Manager Cross-Site Scripting Vulnerability (CVE-2025-10573): CVSS: 9.6

Ivanti Security Update – 10 December 2025 Read More »

Fortinet Security Updates – 10 December 2025

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, conduct cross-site scripting attacks, gain elevated privileges, obtain sensitive information, manipulate files, and write arbitrary files via specific HTTP or HTTPS commands, bypass the FortiCloud SSO login authentication via

Fortinet Security Updates – 10 December 2025 Read More »

SAP Security Patch Day December 2025

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products, such as SAP NetWeaver (remote service for Xcelsius, Internet Communication Framework, Enterprise Portal, Application Server ABAP), SAP BusinessObjects Business Intelligence Platform, SAP Web Dispatcher and Internet Communication Manager (ICM),

SAP Security Patch Day December 2025 Read More »

Grafana Security Updates – 23 November 2025

Grafana has released security updates to fix several vulnerabilities, including a critical vulnerability in Grafana Enterprise. The addressed vulnerabilities could allow the attacker to provision a user with a numeric external IDs, which may override internal user IDs and result in impersonation or privilege escalation. Sample of the addressed vulnerabilities: Grafana Enterprise Incorrect Privilege Assignment

Grafana Security Updates – 23 November 2025 Read More »

SolarWinds Security Updates – 19 November 2025

SolarWinds has released security updates to address several vulnerabilities affecting multiple SolarWinds products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, conduct phishing attacks, execute arbitrary code on a directory via admin privileges, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. SolarWinds Serv-U Logic Abuse – Remote

SolarWinds Security Updates – 19 November 2025 Read More »

Fortinet Security Update – 16 November 2025

Fortinet has released a security update to fix a critical vulnerability in FortiWeb. The addressed vulnerability could allow the remote attacker to execute administrative commands via crafted HTTP or HTTPS requests, and take over admin accounts and completely compromise the affected systems. FortiWeb GUI Path Confusion Vulnerability (CVE-2025-64446): CVSS: 9.1 Attack Vector: Network Attack Complexity:

Fortinet Security Update – 16 November 2025 Read More »

Mozilla Firefox Security Updates – 13 November 2025

Mozilla has released an updated Firefox version 145, Firefox ESR versions 115.30, and 140.5 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Mozilla Firefox Sandbox Escape Vulnerability (CVE-2025-13026):

Mozilla Firefox Security Updates – 13 November 2025 Read More »

Microsoft November 2025 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed one actively exploited zero-day vulnerability. Microsoft has fixed (63) vulnerabilities, with (1) classified as critical, as it could allow the attacker to gain elevated privileges, perform denial of service attacks, obtain sensitive information, bypass security restrictions, or execute

Microsoft November 2025 Patch Tuesday Read More »

Cisco Security Updates – 06 November 2025

Cisco has released security updates to fix several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, upload arbitrary files, bypass authentication, perform reflected cross-site scripting attacks, elevate privileges to root, obtain sensitive information, orexecute arbitrary commands/codes and gain access to the affected systems. Sample of addressed vulnerabilities:

Cisco Security Updates – 06 November 2025 Read More »

Apache Tomcat Security Updates – 05 November 2025

Apache has released security updates to address multiple vulnerabilities affecting Apache Tomcat. The addressed vulnerabilities could allow the attacker to perform denial-ofservice attacks, execute code, and gain access by sending a specially crafted URL to the affected system. Sample of the addressed vulnerabilities: 1. Apache Tomcat Console Manipulation Via Escape Sequences in Log Messages Vulnerability

Apache Tomcat Security Updates – 05 November 2025 Read More »

Mozilla FireFox Security Update – 02 November 2025

Mozilla has released an updated Firefox version 144.0.2 to address critical vulnerability The addressed vulnerability could allow the attacker to execute arbitrary code and gain access to the affected system. Mozilla Firefox Use-after-free in WebGPU internals triggered from a compromised child process (CVE-2025-12380): CVSS: 9.8 Attack Vector: Network Attack Complexity: Low Privileges Required: None User

Mozilla FireFox Security Update – 02 November 2025 Read More »

Oracle Security Patch Update – 22 October 2025

Oracle released its critical patch updates for October 2025, containing 374 new security patches for multiple affected products in Oracle code and third-party components. The addressed vulnerabilities could allow the attacker to perform various attacks, such as obtaining sensitive information, conducting denial of service attacks, performing data manipulation (update, insert, or delete access), or executing

Oracle Security Patch Update – 22 October 2025 Read More »