Most of the fixes resolve code execution, privilege escalation, and information disclosure vulnerabilities.
Tag: Patch & Updates
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
The Head Mare hacktivist group has been exploiting the bugs to deploy the PhantomCore malware.
Oracle Patches 943 Vulnerabilities, Including Critical WebLogic Bugs
Oracle patched 943 vulnerabilities, including critical remotely exploitable flaws.
Windows 11 Hotpatching Explained: How Much Does It Really Reduce Reboots?
Windows 11 hotpatching can install security updates without reboots. Learn who qualifies, how the update cycle works, and what IT teams should expect.
Apple Patches Critical iPhone Flaws: Attackers Could Run Malicious Code
Apple patched critical iPhone flaws that could allow malicious code execution, including an ImageIO vulnerability. Here’s what users should know.
August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415 CVEs
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415…
GitLab Released GraphQL Vulnerability (CVE-2026-19478) Emergency Patch
GitLab released an emergency, out-of-band security update to address a critical access control flaw affecting self-managed instances of…
Zyxel Patches Command Injection Flaw in 18 Access Points Allowing Root OS Command Execution
Zyxel has released firmware updates for a high-severity command injection vulnerability, tracked as CVE-2026-6837, affecting 18 wireless access point…
Cisco Patches Critical Crosswork, Secure Workload Flaws
Cisco has issued security updates addressing critical vulnerabilities in its Crosswork network automation platform and Secure Workload security solution.
Critical Arbitrary File Upload Vulnerability Patched in Elementor Pro WordPress Plugin
On July 24th, 2026, we received a submission for an Unauthenticated Arbitrary File Upload vulnerability in Elementor Pro, a WordPress plugin with an…
Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities
The flaws could be exploited to execute arbitrary code, access sensitive information, and elevate privileges.
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
The flaws could lead to remote code execution, authentication bypasses, and path traversal attacks.
Splunk Patches Critical MCP Server RCE and 16 Other Security Flaws Across AI Toolkit, Kafka Apps
Splunk has released security updates for 17 vulnerabilities affecting several apps and add-ons, including Splunk MCP Server, Splunk AI Toolkit, and Splunk…
Updated ToxicPanda Variant Targets 140+ Banking and Crypto Apps
Zimperium lifts the lid on the ToxicPanda 2.0 Android banking Trojan
Exploitation Expected for Critical Authentication Bypass Patched in Citrix NetScaler
Remote, unauthenticated attackers could exploit the critical-severity flaw without user interaction.
Microsoft Defender Update Crashes Virus Scans on Windows PCs
Microsoft Defender has been aborting Quick, Full, and Offline virus scans on Windows systems following a series of Security Intelligence updates released…
8,539 reasons to rethink how vulnerabilities get patched
The window for responding to newly disclosed security flaws is getting shorter. Exploit code can appear quickly, exploitability can be tested soon after…
Microsoft blames AI for delayed Exchange update, can’t say when it will arrive
Dealing with machine-made bug backlog makes it hard to find a moment to deliver promised subscription service
GitLab Patches Critical CVE-2026-19478 GraphQL Vulnerability
GitLab patched a critical GraphQL flaw as researchers observed exploitation attempts.
Apple Patches Dozens of WebKit Flaws in Latest Security Updates
Apple has issued a major set of security updates for macOS, iOS, and iPadOS after discovering dozens of vulnerabilities in WebKit, the browser engine that…