Výsledky hledání

typ: novinka v produktu× v celém archivu zrušit filtry

146 karet z 150 položek · strana 1 z 3 CZ · EN/orig

2

SPOJENO PŘES CVE Moxa TN-4500B Series — Out-of-Bounds Write Vulnerability

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv4.0: 8.8, CVEs: CVE-2026-15579, Summary: Moxa has disclosed an out-of-bounds write vulnerability in the Web login functionality of TN-4500B Series Ethernet switches. The vulnerability can be exploited remotely without authentication by supplying an overly long username, potentially causing a buffer overflow and denial of service. Moxa has released firmware 2.1, which addresses the vulnerability. Affected…

EPSS 0.01 CVSS 8.8 CVE-2026-15579 Moxa FI CA FR

tg: zranitelnost tg: novinka v produktu tp: průmyslové systémy

· NCSC-FI · Moxa TN-4500B Series — Out-of-Bounds Write Vulnerability · Cyber Centre Kanada · [Control Systems] Moxa security advisory (AV26-938) · CERT-FR – avis · Vulnérabilité dans les produits Moxa (18 septembre 2026)

SPOJENO PŘES CVE Google Chrome 153 — Stable Channel Security Update

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.6, CVEs: CVE-2026-93374, CVE-2026-93372, CVE-2026-93375, CVE-2026-93382, CVE-2026-93387, CVE-2026-93373, CVE-2026-93381, CVE-2026-93379, CVE-2026-93377, CVE-2026-93380, CVE-2026-93384, CVE-2026-93383, CVE-2026-93376, CVE-2026-93378, CVE-2026-93385, CVE-2026-93386, Summary: Google released Chrome 153.0.8010.52/.53 for Windows/Mac and 153.0.8010.52 for Linux on 17 September. The update contains 16 security…

EPSS 0.00 CVSS 9.6 CVE-2026-93372 CVE-2026-93373 CVE-2026-93374 CVE-2026-93375 CVE-2026-93376 CVE-2026-93377 CVE-2026-93378 CVE-2026-93379 CVE-2026-93380 CVE-2026-93381 CVE-2026-93382 CVE-2026-93383 CVE-2026-93384 CVE-2026-93385 CVE-2026-93386 CVE-2026-93387 Google FI FR

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Google Chrome 153 — Stable Channel Security Update · CERT-FR – avis · Multiples vulnérabilités dans Google Chrome (18 septembre 2026)

4

Unbound 1.26.1 release has a number of security fixes.

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv4.0: 9.1, CVEs: CVE-2026-81642, CVE-2026-81634, CVE-2026-82717, CVE-2026-77955, CVE-2026-78227, CVE-2026-80225, CVE-2026-82720, CVE-2026-85501, CVE-2026-77860, Summary: Fix CVE-2026-81642, Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY. Thanks to Yuqi Qiu and Xiang Li from Nankai University, AOSP Lab for the report. Fix CVE-2026-81634, Possible heap buffer overflow during DNSSEC…

EPSS 0.01 CVSS 9.1 CVE-2026-77860 CVE-2026-77955 CVE-2026-78227 CVE-2026-80225 CVE-2026-81634 CVE-2026-81642 CVE-2026-82717 CVE-2026-82720 CVE-2026-85501 FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Unbound 1.26.1 release has a number of security fixes.

3

Mozilla Foundation Security Advisory 2026-96

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-92238, CVE-2026-92239, CVE-2026-92240, CVE-2026-92005, CVE-2026-92006, CVE-2026-92007, CVE-2026-92008, CVE-2026-92009, CVE-2026-92010, CVE-2026-92011, CVE-2026-92012, CVE-2026-92013, CVE-2026-92015, CVE-2026-92035, CVE-2026-92016, CVE-2026-92017, CVE-2026-92018, CVE-2026-92019, CVE-2026-92020, CVE-2026-92022 (+46 other associated CVEs), Summary: Security Vulnerabilities fixed in…

Mozilla FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Mozilla Foundation Security Advisory 2026-96

Pixel Update Bulletin—September 2026

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: None, CVEs: CVE-2026-56914, CVE-2026-58773, CVE-2026-55318, CVE-2026-55343, CVE-2026-56920, CVE-2026-56967, CVE-2026-58683, CVE-2026-58710, CVE-2026-0179, CVE-2026-0187, CVE-2026-0192, CVE-2026-0194, CVE-2026-0199, CVE-2026-0200, CVE-2026-55302, CVE-2026-55317, CVE-2026-55323, CVE-2026-55329, CVE-2026-55337, CVE-2026-55357 (+90 other associated CVEs), Summary: The Pixel Update Bulletin contains details of…

Google FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Pixel Update Bulletin—September 2026

Chrome - Stable Channel Update for Desktop

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-91726, CVE-2026-91721, CVE-2026-91749, CVE-2026-91724, CVE-2026-91728, CVE-2026-91734, CVE-2026-91727, CVE-2026-91743, CVE-2026-91744, CVE-2026-91712, CVE-2026-91748, CVE-2026-91720, CVE-2026-91731, CVE-2026-91747, CVE-2026-91733, CVE-2026-91741, CVE-2026-91709, CVE-2026-91717, CVE-2026-91735, CVE-2026-91708 (+22 other associated CVEs), Summary: The Stable channel has been updated to…

FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Chrome - Stable Channel Update for Desktop

5

Cisco Nexus Dashboard Software Security Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these issues by…

EPSS 0.00 CVE-2026-20322 CVE-2026-20325 CVE-2026-20326 CVE-2026-20360 CVE-2026-20361 CVE-2026-76409 Cisco US

tg: zranitelnost tg: novinka v produktu

· Cisco PSIRT · Cisco Nexus Dashboard Software Security Hardening Release: September 2026

Cisco Identity Services Engine Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing. One of them is known to be actively exploited. For more information, see Cisco…

EPSS 0.00 CVE-2026-20130 CVE-2026-20192 CVE-2026-20194 CVE-2026-20234 CVE-2026-20237 CVE-2026-20287 Cisco US

tg: zneužíváno tg: zranitelnost tg: novinka v produktu tp: identita

· Cisco PSIRT · Cisco Identity Services Engine Hardening Release: September 2026

Mozilla Foundation Security Advisory 2026-90 - Security Vulnerabilities fixed in Firefox 156

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-92033, CVE-2026-92005, CVE-2026-92006, CVE-2026-92007, CVE-2026-92008, CVE-2026-92009, CVE-2026-92010, CVE-2026-92011, CVE-2026-92012, CVE-2026-92013, CVE-2026-92015, CVE-2026-92034, CVE-2026-92035, CVE-2026-92016, CVE-2026-92017, CVE-2026-92018, CVE-2026-92019, CVE-2026-92020, CVE-2026-92022, CVE-2026-92023 (+55 other associated CVEs), Summary: Security Vulnerabilities fixed in Firefox…

Mozilla FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Mozilla Foundation Security Advisory 2026-90 - Security Vulnerabilities fixed in Firefox 156

4

Mozilla security advisory (AV26-924)

Serial Number: AV26-924Date: September 15, 2026 As of September 15, 2026, Mozilla is affected by vulnerabilities in the following products: Firefox ESR Versions prior to 115.41 Versions prior to 140.16 Versions prior to 153.3 Firefox Versions prior to 156 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Vulnerabilities fixed in Firefox 156 — Mozilla Security Vulnerabilities fixed in Firefox…

Mozilla CA

tg: zranitelnost tg: novinka v produktu

· Cyber Centre Kanada · Mozilla security advisory (AV26-924)

Automate Asset Isolation: Your Last Resort to Meet Remediation Deadlines

Executive Summary Remediation deadlines slip for reasons outside your control: a patch does not exist yet, a patch is delayed, or a remediation attempt fails. The outcome is the same either way: the host stays unpatched and stays on the network. TruRisk Eliminate closes that window by isolating the host automatically the moment your deadline passes, executed natively through the Qualys Cloud Agent with no EDR integration required. This post covers the trigger criteria, the QQL query behind a…

Qualys US

tg: novinka v produktu tg: návod tg: propagace

· Qualys · Automate Asset Isolation: Your Last Resort to Meet Remediation Deadlines

SPOJENO PŘES CVE GitLab opravil kritickou zranitelnost umožňující čtení citlivých dat

GitLab vyzval uživatele k okamžité aktualizaci serverů kvůli kritické zranitelnosti CVE-2026-85706 typu path traversal. Chyba v rozhraní API pro revize kódu v repozitářích umožňuje za určitých podmínek neověřenému útočníkovi číst libovolná data ze zranitelného serveru, včetně přihlašovacích údajů a dalších citlivých informací. Společnost watchTowr již zaznamenala pokusy o vyhledávání neaktualizovaných serverů dostupných z internetu. GitLab zranitelnost opravil ve verzích 19.3.2, 19.2.6 a 19.1 a…

KEV ✓ EPSS 0.15 CVE-2026-85706 GitLab veřejná správa CZ NL CA US

tg: zneužíváno tg: zranitelnost tg: regulace tg: novinka v produktu

· CSIRT.CZ (CZ.NIC) · GitLab opravil kritickou zranitelnost umožňující čtení citlivých dat · NCSC-NL · NCSC-2026-0367 [1.00] [H/H] Kwetsbaarheid verholpen in GitLab Community en Enterprise Editions · Cyber Centre Kanada · GitLab security advisory (AV26-917) · CISA Advisories · CISA Adds One Known Exploited Vulnerability to Catalog · CISA KEV · GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability (CVE-2026-85706)

About the security content of iOS 27 and iPadOS 27

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-86882, CVE-2026-43664, CVE-2026-64761, CVE-2026-65404, CVE-2026-84523, CVE-2026-86888, CVE-2026-20683, CVE-2026-65408, CVE-2026-65407, CVE-2026-84519, CVE-2026-84593, CVE-2026-86905, CVE-2026-84583, CVE-2026-65410, CVE-2026-84616, CVE-2026-84607, CVE-2026-65406, CVE-2026-86885, CVE-2026-86879, CVE-2026-65414 (+253 other associated CVEs), Summary: This document describes the security…

Apple FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · About the security content of iOS 27 and iPadOS 27

5

Apple Updates Everything, (Mon, Sep 14th)

Today, Apple released its annual update across all its operating systems. With that, Apple not only released new features but also patched 261 different vulnerabilities. This is the most vulnerabilities Apple has ever patched, but the increase is not as significant as other vendors' "post-AI" patch releases. In addition to the major "27" version, Apple also released bug-fix-only releases for the 26 branch of its operating systems and for 15 (Sequioa) for macOS. None of the vulnerabilities is…

Apple US

tg: zranitelnost tg: novinka v produktu

· SANS Internet Storm Ctr. · Apple Updates Everything, (Mon, Sep 14th)

Google’s new search redirects make links harder to check before you click

Google is changing how some links in its search results work. Instead of linking directly to the destination, Google has started routing some search result links through opaque google.com/goto?url=... redirects. The url parameter does not show a readable version of the destination but uses a custom, Google-specific encoding. Google confirmed the rollout to Search Engine Roundtable: “We have a long history of deploying technical measures against evolving forms of abuse, and we regularly take…

Google US

tg: novinka v produktu tg: názor tp: phishing

· Malwarebytes Labs · Google’s new search redirects make links harder to check before you click

SPOJENO PŘES CVE CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

OverviewOn September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresses CVE-2026-85706, a critical path traversal vulnerability (CWE-22) in the repository commits API with a CVSSv3.1 score of 10.0. According to GitLab, improper path confinement and missing authentication enforcement could allow an unauthenticated user to read arbitrary files from an affected GitLab server under certain conditions.On September…

KEV ✓ EPSS 0.15 CVSS 10.0 CVE-2026-85706 CVE-2026-87719 GitLab US SE

tg: zneužíváno tg: zranitelnost tg: novinka v produktu

· Rapid7 · CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild · CERT-SE · GitLab rättar kritiska sårbarheter

SPOJENO PŘES CVE Multiples vulnérabilités dans Microsoft Edge (14 septembre 2026)

De multiples vulnérabilités ont été découvertes dans Microsoft Edge. Elles permettent à un attaquant de provoquer un contournement de la politique de sécurité et un problème de sécurité non spécifié par l'éditeur. Microsoft indique que la vulnérabilité CVE-2026-87491 est activement exploitée.

KEV ✓ EPSS 0.01 CVE-2026-87491 Microsoft Google Chrome FR HR US CA NL

tg: zneužíváno tg: zranitelnost tg: novinka v produktu

· CERT-FR – avis · Multiples vulnérabilités dans Microsoft Edge (14 septembre 2026) · CERT.hr · Google je izdao zakrpe za 230 ranjivosti. Ažurirajte Chrome preglednik. · Malwarebytes Labs · Update Chrome now to protect against an actively exploited vulnerability · Cyber Centre Kanada · Google security advisory (AV26-904) · NCSC-NL · NCSC-2026-0354 [1.00] [M/H] Kwetsbaarheid verholpen in Google Chrome · CISA KEV · Google Chromium V8 Out of Bounds Write Vulnerability (CVE-2026-87491)

1

GitLab Critical Patch Release: 19.3.2, 19.2.6, 19.1.8

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 10.0, CVEs: CVE-2026-85706, CVE-2026-87719, CVE-2026-88765, CVE-2026-79708, CVE-2026-78252, CVE-2026-13210, CVE-2025-14871, CVE-2026-1168, CVE-2024-11222, CVE-2026-12910, CVE-2026-82837, CVE-2026-19619, CVE-2026-86341, CVE-2026-86340, CVE-2026-7514, CVE-2026-8030, CVE-2026-16794, CVE-2026-3855, Summary: On September 10, 2026, we released versions 19.3.2, 19.2.6, 19.1.8 for GitLab Community Edition (CE)…

CVSS 10.0 GitLab FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · GitLab Critical Patch Release: 19.3.2, 19.2.6, 19.1.8

2

SPOJENO PŘES CVE Risolte vulnerabilità in GitLab CE/EE

Aggiornamenti di sicurezza rilasciati per GitLab, nota piattaforma per la gestione del ciclo di sviluppo software e della collaborazione sui progetti, sanano alcune vulnerabilità, di cui 2 con gravità "critica" e 6 con gravità "alta"

KEV ✓ EPSS 0.15 CVSS 10.0 CVE-2025-14871 CVE-2026-1168 CVE-2026-13210 CVE-2026-78252 CVE-2026-79708 CVE-2026-85706 CVE-2026-87719 CVE-2026-88765 GitLab IT US

tg: zranitelnost tg: novinka v produktu

· CSIRT Itálie (ACN) · Risolte vulnerabilità in GitLab CE/EE · GitLab Security · GitLab Critical Patch Release: 19.3.2, 19.2.6, 19.1.8

Metasploit Wrap Up: This One Goes to Sixteen!

This One Goes to Sixteen!Another banger from Metasploit with sixteen new modules, including ten exploit modules, with five on the CISA KEV list. Cisco, Papercut, Sonicwall, Jetbrains, and Langflow all have exploit modules, and not to be outdone, we even have a Metasploit scanner to watch the watchers!New module content (16)Elasticsearch ingest-attachment Apache Tika XFA XXE Local File ReadAuthors: Bourbon Offensive Security Services and Jean-Marie BourbonType: AuxiliaryPull request: #21739…

KEV ✓ EPSS 0.88 CVE-2025-54988 CVE-2025-66516 CVE-2026-19295 CVE-2026-20079 CVE-2026-20929 CVE-2026-23744 CVE-2026-48558 CVE-2026-63077 CVE-2026-75604 CVE-2026-81578 CVE-2026-82078 CVE-2026-83548 CVE-2026-83549 Cisco PaperCut SonicWall JetBrains US

tg: novinka v produktu tg: přehled

· Rapid7 · Metasploit Wrap Up: This One Goes to Sixteen!

3

Security update available for Adobe Acrobat and Reader (APSB26-141)

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 8.8, CVEs: CVE-2026-81996, CVE-2026-81994, CVE-2026-81983, CVE-2026-79907, CVE-2026-79908, CVE-2026-79909, CVE-2026-80161, CVE-2026-81973, CVE-2026-81975, CVE-2026-81976, CVE-2026-81992, CVE-2026-81979, CVE-2026-81980, CVE-2026-81981, CVE-2026-81985, CVE-2026-81986, CVE-2026-81987, CVE-2026-81988, CVE-2026-81989, CVE-2026-81990 (+12 other associated CVEs), Summary: Adobe has released a security update for…

CVSS 8.8 Adobe FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Security update available for Adobe Acrobat and Reader (APSB26-141)

Google Chrome Stable Channel Update

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: 9.6, CVEs: CVE-2026-87464, CVE-2026-87488, CVE-2026-87438, CVE-2026-87527, CVE-2026-87628, CVE-2026-87512, CVE-2026-87585, CVE-2026-87444, CVE-2026-87447, CVE-2026-87440, CVE-2026-87633, CVE-2026-87525, CVE-2026-87578, CVE-2026-87517, CVE-2026-87524, CVE-2026-87569, CVE-2026-87554, CVE-2026-87467, CVE-2026-87492, CVE-2026-87520 (+210 other associated CVEs), Summary: The Chrome team is delighted to announce the…

CVSS 9.6 Google FI

tg: zneužíváno tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Google Chrome Stable Channel Update

8

Cisco Advance Notification for Publication of September 16, 2026, Security Advisories

On September 16, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: BroadWorks CommPilot Application Software Identity Services Engine (ISE) (security hardening release) Nexus Dashboard (security hardening release) Secure Firewall Adaptive Security Appliance (ASA) (security hardening release) Secure Firewall Management Center (FMC) (security…

Cisco US

tg: zranitelnost tg: novinka v produktu

· Cisco PSIRT · Cisco Advance Notification for Publication of September 16, 2026, Security Advisories

Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it

If your scan engine already holds credentials for a host, it can ask that host which ports are open instead of probing for them.Every scan begins with the same question: which ports on this host are open? Everything after it, from identifying services to checking for vulnerabilities to evaluating policy, depends on the answer being right. The traditional answer comes from the outside: the scan engine sends traffic to a range of ports and infers each port's state from how the host responds. That…

US

tg: novinka v produktu tg: návod tp: identita

· Rapid7 · Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it

Introducing the CyberAgents Exchange AI Inspector: Rigorous review for community-built AI

Open-source registries for AI agents are only effective when they include a rigorous, transparent security review process for community submissions. That’s why for its new CyberAgents Exchange registry, Tenable paired its exposure management expertise with OpenAI GPT Cyber models to create the CyberAgents Exchange AI Inspector.Key takeawaysThe Exchange Inspector combines Tenable’s exposure detection with OpenAI’s GPT Cyber models and with human oversight to rigorously vet submissions made to…

Tenable OpenAI US

tg: novinka v produktu tg: propagace tp: AI

· Tenable Research · Introducing the CyberAgents Exchange AI Inspector: Rigorous review for community-built AI

Security Advisory Ivanti Sentry (CVE-2026-83527)

Classification: Severe, Solution: Official Fix, Exploit Maturity: Unproven, CVSSv3.0: 8.1, CVEs: CVE-2026-83527, Summary: Ivanti has released updates for Ivanti Sentry that address one high severity vulnerability. This vulnerability impacts deployments managed by EPMM and Ivanti Neurons for MDM. We are not aware of any customers being exploited by this vulnerability at the time of disclosure. CVE-2026-83527 CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS:3.0 8.1 An Authentication Bypass…

EPSS 0.01 CVSS 8.1 CVE-2026-83527 Ivanti FI

tg: zranitelnost tg: novinka v produktu tp: identita

· NCSC-FI · Security Advisory Ivanti Sentry (CVE-2026-83527)

Security Advisory Ivanti Neurons for ITSM (Multiple CVEs)

Classification: Critical, Solution: Official Fix, Exploit Maturity: Unproven, CVSSv3.1: 9.9, CVEs: CVE-2026-12744, CVE-2026-12745, CVE-2026-12651, CVE-2026-12650, CVE-2026-12648, CVE-2026-12645, CVE-2026-12646, CVE-2026-12647, Summary: Ivanti has released updates for Ivanti Neurons for ITSM (N-ITSM) which addresses High and Critical severity vulnerabilities. We are not aware of any customers being exploited by these vulnerabilities at the time of disclosure. Additionally, it’s important for…

EPSS 0.02 CVSS 9.9 CVE-2026-12645 CVE-2026-12646 CVE-2026-12647 CVE-2026-12648 CVE-2026-12650 CVE-2026-12651 CVE-2026-12744 CVE-2026-12745 Ivanti FI

tg: zranitelnost tg: novinka v produktu tp: AI

· NCSC-FI · Security Advisory Ivanti Neurons for ITSM (Multiple CVEs)

N-central 2026.3 Hotfix 4 – CVE-2026-86218 & Hotfix 3 - CVE-2026-86206 and CVE-2026-86207

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv4.0: 10.0, CVEs: CVE-2026-86206, CVE-2026-86207, CVE-2026-86218, Summary: Hotfix 4 includes security fixes for CVE-2026-86218 which is a critical-CVSS-rated vulnerability that could allow for pre-authenticated remote code execution on the N-central server. Hotfix 3 includes security fixes for CVE-2026-86206 and CVE-2026-86207 which are high-CVSS-rated vulnerabilities that could allow an unauthorized party to…

KEV ✓ EPSS 0.01 CVSS 10.0 CVE-2026-86206 CVE-2026-86207 CVE-2026-86218 N-able FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · N-central 2026.3 Hotfix 4 – CVE-2026-86218 & Hotfix 3 - CVE-2026-86206 and CVE-2026-86207

4

Claude Mythos 5 is coming to Tenable One, powering the new “Adversary View”

Tenable is bringing Anthropic’s Claude Mythos 5 into our enterprise security offerings. Adding frontier adversarial reasoning to the Tenable One Exposure Management Platform will help customers better anticipate how attackers could breach their environments and stay ahead of AI-fueled risk. Tenable One Adversary View, the first innovation planned from this work, will debut in the coming weeks.Key takeawaysClaude Mythos 5 is coming to Tenable One. In addition to using Claude Mythos 5 for…

Tenable Anthropic US

tg: novinka v produktu tg: propagace tp: AI

· Tenable Research · Claude Mythos 5 is coming to Tenable One, powering the new “Adversary View”

1

1

Google Chrome Stable Channel Update

Classification: Severe, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: None, CVEs: CVE-2026-85046, CVE-2026-85052, CVE-2026-85043, CVE-2026-85048, CVE-2026-85045, CVE-2026-85050, CVE-2026-85053, CVE-2026-85042, CVE-2026-85049, CVE-2026-85051, CVE-2026-85047, CVE-2026-85044, Summary: The Stable channel has been updated to 152.0.7977.82/.83 for Windows and Mac and 152.0.7977.82 for Linux, which will roll out over the coming days/weeks. A full list of changes in this build is available…

KEV ✓ EPSS 0.01 CVE-2026-85042 CVE-2026-85043 CVE-2026-85044 CVE-2026-85045 CVE-2026-85046 CVE-2026-85047 CVE-2026-85048 CVE-2026-85049 CVE-2026-85050 CVE-2026-85051 CVE-2026-85052 CVE-2026-85053 Google FI

tg: zneužíváno tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Google Chrome Stable Channel Update

3

What’s new with Google Cloud

Want to know the latest from Google Cloud? Find it here in one handy location. Check back regularly for our newest updates, announcements, resources, events, learning opportunities, and more. Tip: Not sure where to find what you’re looking for on the Google Cloud blog? Start here: Google Cloud blog 101: Full list of topics, links, and resources. aside_block <ListValue: []> Aug 31 - Sept 4 Automate VM guest software lifecycle with VM Extension Manager, now GAGoogle Cloud VM Extension Manager is…

Google US

tg: novinka v produktu tg: přehled tp: AI

· Mandiant / Google TI · What’s new with Google Cloud

CSIRT.CZ spustil projekt pro zlepšení boje s nebezpečnými stránkami

CSIRT.CZ spustil projekt Strážci internetu. Cílem Strážců je oslovit komunitu lidí, kteří chtějí být prospěšní druhým, mít dobrý pocit z toho, co dělají, a pomoci s obranou českého kyberprostoru a jeho uživatelů před útoky na bázi sociálního inženýrství. V našem blogpostu se dozvíte proč projekt vznikl, jak funguje i to, jak bude hlášení nebezpečné stránky využito.

CZ

tg: novinka v produktu tg: propagace tp: phishing

· CSIRT.CZ – novinky · CSIRT.CZ spustil projekt pro zlepšení boje s nebezpečnými stránkami

3

Google Chrome Stable Channel Update for Desktop

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-84353, CVE-2026-84352, CVE-2026-84354, CVE-2026-84359, CVE-2026-84357, CVE-2026-84324, CVE-2026-84349, CVE-2026-84326, CVE-2026-84333, CVE-2026-84351, CVE-2026-84325, CVE-2026-84328, CVE-2026-84347, CVE-2026-84323, CVE-2026-84355, CVE-2026-84358, CVE-2026-84332, CVE-2026-84330, CVE-2026-84334, CVE-2026-84348 (+6 other associated CVEs), Summary: The Stable channel has been updated to…

Google FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Google Chrome Stable Channel Update for Desktop

SPOJENO PŘES CVE Cisco IOS XR Software Security Hardening Release: September 2026

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-20274, CVE-2026-20275, CVE-2026-20276, CVE-2026-20277, CVE-2026-20278, CVE-2026-20279, CVE-2026-20280, Summary: As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…

EPSS 0.01 CVSS 9.8 CVE-2026-20274 CVE-2026-20275 CVE-2026-20276 CVE-2026-20277 CVE-2026-20278 CVE-2026-20279 CVE-2026-20280 Cisco FI US

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Cisco IOS XR Software Security Hardening Release: September 2026 · Cisco PSIRT · Cisco IOS XR Software Security Hardening Release: September 2026

4

Risolte vulnerabilità in Google Chrome

Google ha rilasciato un aggiornamento per il browser Chrome al fine di correggere 26 nuove vulnerabilità di sicurezza, di cui 2 con gravità “critica” e 9 con gravità “alta”.

EPSS 0.00 CVE-2026-84324 CVE-2026-84325 CVE-2026-84326 CVE-2026-84333 CVE-2026-84349 CVE-2026-84351 CVE-2026-84352 CVE-2026-84353 CVE-2026-84354 CVE-2026-84357 CVE-2026-84359 Google IT

tg: zranitelnost tg: novinka v produktu

· CSIRT Itálie (ACN) · Risolte vulnerabilità in Google Chrome

1

3

GreyNoise + CrowdStrike: Real-Time Edge Intelligence in Falcon Next-Gen SIEM and Charlotte Agentic SOAR

Today we’re announcing an expanded integration between GreyNoise and the CrowdStrike Falcon® platform, with new content for CrowdStrike Falcon® Next-Gen SIEM and CrowdStrike Charlotte Agentic SOAR. The expanded integration includes a purpose-built Falcon Next-Gen SIEM dashboard, correlation rules that detect allowed inbound traffic from malicious infrastructure, and SOAR playbooks that bring GreyNoise threat context into automated response workflows. Install the GreyNoise Foundry App to get…

CrowdStrike US

tg: novinka v produktu tg: propagace tp: AI

· GreyNoise Labs · GreyNoise + CrowdStrike: Real-Time Edge Intelligence in Falcon Next-Gen SIEM and Charlotte Agentic SOAR

1

YARA-X 1.20.0 Release, (Sun, Aug 30th)

YARA-X's 1.20.0 release brings 14 improvements and 13 bugfixes. One new CLI option is --ignore-invalid-rules that allows one to skip rules that fail to compile. There have also been new releases of YARA: YARA 4.5.6, YARA 4.5.7 and YARA 4.5.8 with 32 bugfixes in total. (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

YARA US

tg: novinka v produktu

· SANS Internet Storm Ctr. · YARA-X 1.20.0 Release, (Sun, Aug 30th)

1

1