Announcements

Drupal Security Updates – 15 July 2026

Drupal has released security updates to address several vulnerabilities affecting multiple Drupal products. The addressed vulnerabilities could allow the attacker to perform cross-site scripting (XSS), path traversal, and SQL injection attacks, gain elevated privileges, bypass security restrictions, obtain sensitive information, or execute arbitrary code on the affected system, potentially leading to full compromise. Sample of

Drupal Security Updates – 15 July 2026 Read More »

Tenable Security Updates – 15 July 2026

Tenable has released security updates to address several vulnerabilities across Nessus, Nessus Agent, and Tenable Identity Exposure. The addressed vulnerabilities could allow the attacker to perform SQL injection attacks, obtain sensitive information, or execute arbitrary code on the affected systems. Sample of addressed vulnerabilities: 1. Tenable Nessus Agent Path Traversal Vulnerability (CVE-2026-15265): CVSS: 9.1 Attack

Tenable Security Updates – 15 July 2026 Read More »

VMware Security Updates – 15 July 2026

VMware has released security updates to fix several vulnerabilities affecting VMware Avi Load Balancer. The addressed vulnerabilities could allow the attacker to perform directory traversal attacks, bypass security restrictions, gain elevated privileges, or inject and execute arbitrary code on the affected products. Sample of the addressed vulnerabilities: 1. VMware Avi Load Balancer Authentication Bypass Vulnerability

VMware Security Updates – 15 July 2026 Read More »

Google Chrome Security Update – 15 July 2026

Google has released an updated Chrome version 150.0.7871.124/.125 for Windows and Mac and 150.0.7871.124 for Linux. The addressed vulnerabilities could allow the attacker to conduct denial-of-service (DoS) attacks, trigger memory corruption, bypass security restrictions, obtainsensitive information, or execute arbitrary code on the affected systems. Sample of the addressed vulnerabilities: 1. Google Chrome Use-After-Free in Core

Google Chrome Security Update – 15 July 2026 Read More »

Adobe Security Updates – 15 July 2026

Adobe has released security updates to address several vulnerabilities affecting multiple Adobe products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service (DoS) attacks, trigger memory corruption, perform server-side request forgery (SSRF), bypass security restrictions, gain elevated privileges, obtain sensitive information, or execute arbitrary commands, potentially leading to gaining access to the affected product.

Adobe Security Updates – 15 July 2026 Read More »

Microsoft July 2026 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed 570 flaws, including 3 publicly disclosed zero-day vulnerabilities. Microsoft has addressed multiple vulnerabilities that could allow attackers to gain elevated privileges, perform spoofing and denial-of-service attacks, bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain

Microsoft July 2026 Patch Tuesday Read More »

SonicWall Security Updates – 15 July 2026

SonicWall has released security updates to fix several vulnerabilities affecting SonicWall SMA1000 Series Appliances. The addressed vulnerabilities could allow the remote attacker to perform a serverside request forgery (SSRF) attack or execute arbitrary operating system (OS) commands, potentially leading to the complete compromise of the affected system. The addressed vulnerabilities: 1. SonicWall SMA1000 Server-Side Request

SonicWall Security Updates – 15 July 2026 Read More »

Apache Tomcat Security Update – 15 July 2026

Apache Tomcat has released a security update to address two vulnerabilities affecting multiple versions of Apache Tomcat. The addressed vulnerabilities could allow the attacker to obtain sensitive information or bypass security restrictions on the affected system. The addressed vulnerabilities: 1. Apache Tomcat Improper Handling of URL Encoding Vulnerability (CVE-2026- 59083): CVSS: 9.1 Attack Vector: Network

Apache Tomcat Security Update – 15 July 2026 Read More »

Google Chrome Security Update – 09 July 2026

Google has released an updated Chrome version 150.0.7871.114/.115 for Windows and Mac and 150.0.7871.114 for Linux. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, obtain sensitive information, bypass security restrictions, inject arbitrary scripts, or execute arbitrary code on the affected systems. Sample of the addressed vulnerabilities: 1. Google Chrome Use After Free

Google Chrome Security Update – 09 July 2026 Read More »

IBM Security Updates – 07 July 2026

IBM has released security updates to address several vulnerabilities affecting multiple IBM products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, bypass security restrictions, gain elevated privileges, obtain sensitive information, perform server-side request forgery and cross-site scripting attacks, execute arbitrary code, and gain access to the affected systems. Sample of addressed vulnerabilities:

IBM Security Updates – 07 July 2026 Read More »

BeyondTrust Security Updates – 07 July 2026

BeyondTrust has released security updates to address vulnerabilities affecting Remote Support (RS), Privileged Remote Access (PRA), and Privilege Management for Windows. The addressed vulnerabilities could allow the attacker to bypass security restrictions, conduct denial of service attacks, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities: 1. BeyondTrust

BeyondTrust Security Updates – 07 July 2026 Read More »

Microsoft Security Updates – 06 July 2026

Microsoft has released security updates to address several vulnerabilities affecting multiple Microsoft products. The addressed vulnerabilities could allow the attacker to perform spoofing attacks, obtain sensitive information, gain elevated privileges, bypass security restrictions, or execute arbitrary code on the affected systems. Sample of the addressed vulnerabilities: 1. Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability

Microsoft Security Updates – 06 July 2026 Read More »

Mozilla Firefox Security Update – 06 July 2026

Mozilla has released an updated Firefox version 152.0.4 to fix a critical vulnerability. The addressed vulnerability could allow the attacker to trigger memory corruption attacks or execute arbitrary code on the affected system. The addressed vulnerability: Mozilla Firefox Memory Safety Bugs Vulnerability (CVE-2026-14241): CVSS: 9.8 Attack Vector: Network Attack Complexity: Low Privileges Required: None User

Mozilla Firefox Security Update – 06 July 2026 Read More »

Google Chrome Security Update – 05 July 2026

Google has released an updated Chrome version 150.0.7871.46/.47 for Windows and Mac and 150.0.7871.46 for Linux. The addressed vulnerabilities could allow the attacker to bypass security restrictions, gain elevated privileges, obtain sensitive information, or execute arbitrary code on the affected systems via a crafted HTML page. Sample of the addressed vulnerabilities: 1. Google Chrome Use

Google Chrome Security Update – 05 July 2026 Read More »

Progress Kemp LoadMaster Security Update – 02 July 2026

Progress has released a security update to address multiple vulnerabilities across Progress Kemp LoadMaster. The addressed vulnerabilities could allow the unauthenticated attacker to bypass security restrictions or execute arbitrary code on the affected system. Sample of the addressed vulnerabilities: Progress Kemp LoadMaster OS Command Injection Vulnerability (CVE-2026- 8037): CVSS: 9.6 Attack Vector: Adjacent Attack Complexity:

Progress Kemp LoadMaster Security Update – 02 July 2026 Read More »

Adobe Security Updates – 01 July 2026

Adobe has released security updates to address several vulnerabilities affecting Adobe ColdFusion and Adobe Campaign Classic. The addressed vulnerabilities could allow the attacker to bypass security restrictions, manipulate files, gain elevated privileges, or execute arbitrary commands on the affected product. Sample of the addressed vulnerabilities: 1. Adobe ColdFusion Unrestricted Upload of File with Dangerous Type

Adobe Security Updates – 01 July 2026 Read More »

Apache Tomcat Security Update – 01 July 2026

Apache Tomcat has released a security update to address several vulnerabilities affecting Apache Tomcat. The addressed vulnerabilities could allow the attacker to perform cross-site scripting attacks or bypass security restrictions on the affected system. Sample of the addressed vulnerabilities: 1. Apache Tomcat Invalid CRL Configuration Vulnerability (CVE-2026-53434): CVSS: 9.1 Attack Vector: Network Attack Complexity: Low

Apache Tomcat Security Update – 01 July 2026 Read More »

Google Chrome Security Updates – 25 June 2026

Google has released an updated Chrome version 149.0.7827.196/197 for Windows and Mac, and 149.0.7827.196 for Linux. The addressed vulnerabilities could allow the attacker to conduct denial of service attacks, obtain sensitive information, bypass security restrictions, or execute arbitrary code on the affected systems via a crafted HTML page. Sample of the addressed vulnerabilities: 1. Google

Google Chrome Security Updates – 25 June 2026 Read More »

Google Chrome Security Updates – 24 June 2026

Google has released an updated Chrome version 149.0.7827.155/.156 for Windows and Mac and 149.0.7827.155 for Linux. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, bypass security restrictions, or execute arbitrary code on the affected systems. Sample of the addressed vulnerabilities: 1. Google Chrome Digital Credentials Use After Free Vulnerability

Google Chrome Security Updates – 24 June 2026 Read More »

Cisco Security Updates – 21 June 2026

Cisco has released security updates to address several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, perform denial of service attacks, or executemarbitrary commands on the affected system. Sample of the addressed vulnerabilities: 1. Cisco Identity Services Engine Remote Code Execution Vulnerability (CVE-2026-20181): CVSS:

Cisco Security Updates – 21 June 2026 Read More »