Vulnerabilities
Citrix NetScaler adds two exploited zero-days
CVE-2026-88771 and CVE-2026-88772 were used to plant web shells in NetScaler. CISA also added CVE-2026-88779 to KEV.
Oct 8, 2026 · 3 min
CVE-2026-96940 hits on-prem Exchange Server
Microsoft fixed an authorization flaw in on-prem Exchange Server that could let users read other mailboxes in the same organization.
Oct 6, 2026 · 2 min
Cisco fixes CVE-2026-76504 in SD-WAN Manager
Cisco fixed CVE-2026-76504 in Catalyst SD-WAN Manager, an actively exploited authentication bypass with no workaround.
Oct 1, 2026 · 2 min
CISA Adds CVE-2026-88772 in Citrix NetScaler
CISA added CVE-2026-88772 to its KEV catalog for active exploitation against Citrix NetScaler ADC
Sep 30, 2026 · 2 min
Apple patches CVE-2026-86950 in CoreGraphics
Apple fixed CVE-2026-86950 in iOS, iPadOS, and macOS. The CoreGraphics flaw may have been used in highly sophisticated attacks.
Sep 30, 2026 · 3 min
Brazil warns on Check Point, Fortinet
Brazil’s CTIR Gov added a critical alert on Check Point Quantum Security Gateway. Fortinet, GitLab and Stockagile also drew notices.
Sep 28, 2026 · 4 min
CISA adds SharePoint CVE-2026-65660 to KEV
CISA added CVE-2026-65660 to the KEV catalog after active exploitation was reported. Microsoft has already released patches.
Sep 27, 2026 · 2 min
Check Point Confirms Active CVE-2026-85102 Exploitation
The flaw affects Security Gateway and Spark Firewall, enables unauthenticated RCE, and was patched on Sept. 9.
Sep 25, 2026 · 2 min
Mexico reviews possible Aeroméxico data leak
Mexico’s anti-corruption office opened a review of a reported Aeroméxico data exposure. The airline said it had previously suffered a cyberattack.
Sep 24, 2026 · 2 min
Ecuador warns of active MikroTik RouterOS flaws
ECUCERT flagged three exploited CVEs in MikroTik RouterOS. Taiwan's NICS-TW and the Dutch DIVD also reported active attacks.
Sep 24, 2026 · 3 min
CVE-2026-94127 affects F5 BIG-IP APM
F5 and security agencies warned of an exploited flaw in BIG-IP APM that can enable unauthenticated RCE and is now in CISA’s KEV.
Sep 24, 2026 · 2 min
CISA Confirms Active Exploitation of ScreenConnect
CISA confirmed active exploitation of CVE-2026-84869 in ScreenConnect. ConnectWise told customers to update to 26.6.5
Sep 22, 2026 · 2 min
CERT-PY expands Ubiquiti alert over flaws
CERT-PY expanded its Ubiquiti advisory with affected products, versions and remote code execution risks tied to UniFi OS flaws.
Sep 18, 2026 · 5 min
Cisco confirms CVE-2026-76460 in ISE
Cisco disclosed an auth bypass in ISE and ISE-PIC with active exploitation and no workaround. Patches are required for 3.1 to 3.5.
Sep 18, 2026 · 2 min
CVE-2026-76461 Hits Cisco Secure Email Gateway
Cisco confirmed active exploitation in Secure Email Gateway. The flaw can let attackers run commands as root through a crafted email.
Sep 16, 2026 · 2 min
CERT-PY expands MISP vulnerability alerts
CERT-PY added new MISP alerts covering critical flaws, an authentication bypass, and other issues affecting versions through 2.5.45.
Sep 13, 2026 · 5 min
CISA adds 7 critical flaws to KEV
CISA added seven vulnerabilities to the KEV, including active exploitation in SonicWall SMA 1000, Kestra OSS, LiteLLM and Sangoma Switchvox.
Sep 12, 2026 · 3 min
Microsoft fixes 974 flaws, including two zero-days
Microsoft’s September 2026 Patch Tuesday fixed 974 vulnerabilities, including two actively exploited Windows zero-days.
Sep 9, 2026 · 3 min
Google patches Chrome for CVE-2026-85046
Google issued an emergency Chrome update fixing CVE-2026-85046, an actively exploited flaw in V8.
Sep 8, 2026 · 3 min
CISA adds active PaperCut flaws to KEV
CISA added CVE-2026-81578, CVE-2026-82078, and CVE-2026-82329 to KEV after active exploitation in PaperCut
Sep 6, 2026 · 2 min