Announcements

Microsoft Security Updates – 10 May 2026

Microsoft has released security updates to address several vulnerabilities affecting multiple Microsoft products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, conduct spoofing attacks, execute arbitrary code, or gain elevated privileges on the affected systems. Sample of the addressed vulnerabilities: 1. Microsoft Azure DevOps Information Disclosure Vulnerability (CVE-2026- 42826): CVSS: 10.0 Attack

Microsoft Security Updates – 10 May 2026 Read More »

Palo Alto Security Update – 06 May 2026

Palo Alto Networks has released a security update to address a critical vulnerability affecting Palo Alto PAN-OS versions 12.1, 11.2, 11.1, and 10.2. The addressed vulnerability could allow the remote attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series firewalls by sending specially crafted packets. The addressed vulnerability: PAN-OS: Unauthenticated User-Initiated

Palo Alto Security Update – 06 May 2026 Read More »

OpenSSL Security Updates – 05 May 2026

OpenSSL has released security updates to address several vulnerabilities affecting OpenSSL Software Services. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks, execute arbitrary code, or obtain sensitive information from the affected system. Sample of the addressed vulnerabilities: 1. OpenSSL Hexadecimal Conversion Heap Buffer Overflow Vulnerability (CVE- 2026-31789): CVSS: 9.8 Attack Vector: Network

OpenSSL Security Updates – 05 May 2026 Read More »

Progress Security Update – 03 May 2026

Progress Software Corporation has released a security update to fix two vulnerabilities affecting MOVEit Automation. The addressed vulnerabilities could allow the attacker to gain elevated privileges or bypass authentication and gain access to the affected system. The addressed vulnerabilities: 1. Progress MOVEit Automation Authentication Bypass Vulnerability (CVE- 2026-4670): CVSS: 9.8 Attack Vector: Network Attack Complexity:

Progress Security Update – 03 May 2026 Read More »

Apache Tomcat Security Update – 03 May 2026

Apache Tomcat has released a security update to address several vulnerabilities affecting Apache Tomcat. The addressed vulnerabilities could allow the attacker to bypass security restrictions, perform request smuggling attacks, obtain sensitive information from server logs, or redirect victims to attacker-controlled sites to perform phishing or other social engineering attacks. Sample of the addressed vulnerabilities: 1.

Apache Tomcat Security Update – 03 May 2026 Read More »

cPanel Security Update – 30 April 2026

cPanel has released a security update to address a vulnerability in cPanel software and WebHost Manager (WHM) affecting all versions after 11.40. The addressed vulnerability could allow the remote unauthorized attacker to bypass authentication and gain access to the affected systems. The addressed vulnerability: cPanel & WHM Login Flow Authentication Bypass Vulnerability (CVE-2026- 41940): CVSS:

cPanel Security Update – 30 April 2026 Read More »

Google Chrome Security Update – 30 April 2026

Google has released an updated Chrome version 147.0.7727.137/138 for Windows and Mac, and 147.0.7727.137 for Linux. The addressed vulnerabilities could allow the attacker to bypass security restrictions, induce the victim to install a malicious extension to leak cross-origin data via a crafted Chrome Extension, obtain sensitive information, exploit heap corruption, or execute arbitrary code, and

Google Chrome Security Update – 30 April 2026 Read More »

Mozilla Firefox Security Updates – 29 April 2026

Mozilla has released an updated Firefox version 150.0.1, Firefox ESR versions 115.35.1 and 140.10.1 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, exploit memory corruption to achieve arbitrary code execution, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Mozilla Firefox

Mozilla Firefox Security Updates – 29 April 2026 Read More »

Microsoft Security Updates – 26 April 2026

Microsoft has released security updates to address several vulnerabilities affecting multiple Microsoft products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, conduct server-side request forgery attacks, execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Microsoft Entra ID Spoofing Vulnerability (CVE-2026-35431): CVSS: 10.0 Attack Vector:

Microsoft Security Updates – 26 April 2026 Read More »

Google Chrome Security Update – 26 April 2026

Google has released an updated version of Chrome, 147.0.7727.116/117 for Windows and Mac, and 147.0.7727.116 for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, escalate privileges, and potentially perform a sandbox escape via a crafted HTML page or video file. Sample of the addressed vulnerabilities: 1. Google Chrome DevTools Use

Google Chrome Security Update – 26 April 2026 Read More »

Microsoft ASP.NET Security Update – 23 April 2026

Microsoft has released a security update to address a vulnerability that affects ASP.NET Core 10.0. The addressed vulnerability could allow the remote unauthenticated attacker to gain SYSTEM privileges on the affected devices by forging authentication cookies. The addressed vulnerability: Microsoft ASP.NET Core 10.0 Improper Verification of Cryptographic Signature (CVE-2026-40372): CVSS: 9.1 Attack Vector: Network Attack

Microsoft ASP.NET Security Update – 23 April 2026 Read More »

Oracle Security Patch Update – 22 April 2026

Oracle released its critical patch updates for April 2026, including 450 new security patches across multiple affected Oracle and third-party products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, bypass security restrictions, manipulate data, gain privileges, perform denial-of-service attacks, execute arbitrary code, and gain access to the affected systems. Sample of the

Oracle Security Patch Update – 22 April 2026 Read More »

Mozilla Firefox Security Updates – 22 April 2026

Mozilla has released an updated Firefox version 150, Firefox ESR versions 115.35 and 140.10 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, manipulate data, gain elevated privileges, obtain sensitive information, perform denial-of-services and spoofing attacks, execute arbitrary code, and gain access to the affected systems. Sample of the

Mozilla Firefox Security Updates – 22 April 2026 Read More »

Cisco Security Updates – 16 April 2026

Cisco has released security updates to address several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks, gain elevated privileges, manipulate data, conduct cross-site scripting attacks, execute arbitrary commands, and gain access to the affected products. Sample of addressed vulnerabilities: 1. Cisco Identity Services Engine Remote Code Execution

Cisco Security Updates – 16 April 2026 Read More »

Google Chrome Security Update -16 April 2026

Google has released an updated Chrome version 147.0.7727.101/102 for Windows and Mac, and 147.0.7727.101 for Linux. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform denial-of service attacks, execute arbitrary code, and gain access to the affected system by persuading the victim to visit a malicious website. Sample of

Google Chrome Security Update -16 April 2026 Read More »

Adobe Security Updates – 15 April 2026

Adobe has released security updates to address several vulnerabilities affecting Adobe Acrobat DC, Acrobat 2024, Acrobat Reader DC and Adobe ColdFusion. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks, obtain sensitive information, bypass security restrictions, execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Adobe

Adobe Security Updates – 15 April 2026 Read More »

Fortinet Security Updates – 15 April 2026

Fortinet has released security updates to fix several vulnerabilities affecting multiple Fortinet products. The addressed vulnerabilities could allow the attacker to execute unauthorized code or commands, bypass authentication controls, gain elevated privileges, perform denial-of-service and URL open redirection attacks, obtain sensitive information, conduct cross-site scripting, SSRF, and SQL injection attacks, and gain access to the

Fortinet Security Updates – 15 April 2026 Read More »

SAP Security Patch Day April 2026

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released security updates to address vulnerabilities across multiple SAP products, including SAP Business Planning and Consolidation, SAP Business Warehouse, SAP ERP, SAP S/4HANA, SAP BusinessObjects Business Intelligence Platform, SAP NetWeaver Application Server (ABAP and Java), SAP Human Capital Management, SAP

SAP Security Patch Day April 2026 Read More »

Google Chrome Security Update – 14 April 2026

Google has released an updated Chrome version 147.0.7727.55/56 for Windows/Mac and 147.0.7727.55 for Linux. The addressed vulnerabilities could allow the attacker to execute arbitrary code, gain elevated privileges, obtain sensitive information, bypass security restrictions, or perform denial-of-service attacks on the affected system. Sample of the addressed vulnerabilities: 1. Google Chrome Use After Free in PrivateAI

Google Chrome Security Update – 14 April 2026 Read More »

Juniper Security Updates – 09 April 2026

Juniper Networks has released security updates to address several vulnerabilities affecting multiple Juniper products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, bypass security restrictions, obtain sensitive information, perform denial-ofservice attacks, conduct cross-site scripting attacks, or execute arbitrary commands and gain access to the affected system. Sample of the addressed vulnerabilities: 1.

Juniper Security Updates – 09 April 2026 Read More »