VIRY.CZ RADAR je monitor bezpečnostních hrozeb: advisories, zranitelnosti a threat intel z veřejných zdrojů, česky a na jednom místě.

65 zdrojů
25 zemí
6 560 položek
5 319 CVE s hodnocením
Více informací

Jsem „protkán“ AI. Snažím se pochopit zdrojové texty a bez vymýšlení je zestručnit a převést do českého jazyka, případně s využitím AI seskupit. Patřičně jsem pak hrdý na týdenní reporty, kde s pomocí AI zpracovávám stovky článků a hledám v nich souvislosti. Používám ale i čistou matematiku, takže pokud například více zdrojů mluví o shodné CVE chybě, seskupím to do jednoho příspěvku. Doporučuji se přihlásit k jejich odběru e-mailem nebo jinou cestou. Pokud se Vám líbím, nebráním se finanční podpoře :-)

Původní „Igiho stránka o virech“ se odstěhovala sem.

Všechny zprávy za posledních 7 dní

K seskupování zpráv do jedné události používám AI 2x denně nebo logiku kolem shodného výčtu CVE (okamžitě).

360 záznamů z 428 položek · strana 3 z 6 CZ · EN/orig

20

ZDI-26-714: Samsung rlottie Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung rlottie. Interaction with the rlottie library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-91826.

EPSS 0.00 CVSS 7.8 CVE-2026-91826 Samsung US

tg: zranitelnost

· Zero Day Initiative · ZDI-26-714: Samsung rlottie Stack-based Buffer Overflow Remote Code Execution Vulnerability

Mozilla Foundation Security Advisory 2026-96

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-92238, CVE-2026-92239, CVE-2026-92240, CVE-2026-92005, CVE-2026-92006, CVE-2026-92007, CVE-2026-92008, CVE-2026-92009, CVE-2026-92010, CVE-2026-92011, CVE-2026-92012, CVE-2026-92013, CVE-2026-92015, CVE-2026-92035, CVE-2026-92016, CVE-2026-92017, CVE-2026-92018, CVE-2026-92019, CVE-2026-92020, CVE-2026-92022 (+46 other associated CVEs), Summary: Security Vulnerabilities fixed in…

Mozilla FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Mozilla Foundation Security Advisory 2026-96

Jenkins Security Advisory 2026-09-16

Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 8.8, CVEs: CVE-2026-92122, CVE-2026-92123, CVE-2026-92124, CVE-2026-92125, CVE-2026-92126, CVE-2026-92127, CVE-2026-92128, CVE-2026-92129, CVE-2026-92130, CVE-2026-92131, CVE-2026-92132, CVE-2026-92133, CVE-2026-92134, CVE-2026-92135, CVE-2026-92136, CVE-2026-92137, CVE-2026-92138, CVE-2026-92139, CVE-2026-92140, CVE-2026-92141, Summary: This advisory announces vulnerabilities in the following Jenkins…

CVSS 8.8 Jenkins FI

tg: zranitelnost

· NCSC-FI · Jenkins Security Advisory 2026-09-16

HPESBNW05135 rev.1 - Multiple Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways & Orchestrator

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.9, CVEs: CVE-2026-76669, CVE-2026-76670, CVE-2026-76672, CVE-2026-76673, CVE-2026-76674, CVE-2026-76675, CVE-2026-76676, CVE-2026-76677, CVE-2026-76678, CVE-2026-76679, CVE-2026-76680, CVE-2026-76681, CVE-2026-76682, CVE-2026-76683, CVE-2026-76684, CVE-2026-76685, CVE-2026-76686, CVE-2026-76687, CVE-2026-76688, CVE-2026-76689 (+19 other associated CVEs), Summary: HPE Networking has released updates for…

CVSS 9.9 HPE FI

tg: zranitelnost

· NCSC-FI · HPESBNW05135 rev.1 - Multiple Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways & Orchestrator

MLflow dspy and statsmodels flavors bypass pickle deserialization control

Classification: Severe, Solution: Temporary Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: , Summary: A vulnerability in MLflow’s dspy and statsmodels model flavors allows unauthorized pickle deserialization executions despite a safety control. Specifically, the dspy flavor conditionally applies the control based on the model path’s file extension, and the statsmodels flavor does not apply the control. Exploitation of this vulnerability allows for arbitrary remote code execution…

MLflow FI

tg: zranitelnost tp: AI

· NCSC-FI · MLflow dspy and statsmodels flavors bypass pickle deserialization control

Sentry Seer vulnerability allows attacker-controlled input to be executed in a privileged environment

Classification: Severe, Solution: Workaround, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-90999, Summary: A vulnerability exists in Sentry Seer when the system is configured to automatically hand issues to a coding agent for remediation. Successful exploitation results in arbitrary code execution within the coding‑agent environment and access to connected source repositories. This vulnerability is tracked as CVE-2026-90999. Successful exploitation may allow arbitrary code…

EPSS 0.00 CVE-2026-90999 Sentry FI

tg: zranitelnost tp: AI

· NCSC-FI · Sentry Seer vulnerability allows attacker-controlled input to be executed in a privileged environment

Drupal core - Moderately critical - Third-party libraries - SA-CORE-2026-013

Classification: Important, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: , Summary: The Drupal project uses the CKEditor library for WYSIWYG editing. CKEditor has released a security update that impacts Drupal. Vulnerabilities are possible if Drupal is configured to use CKEditor for WYSIWYG editing. An attacker that can create or edit content (even without access to CKEditor themselves) may be able to exploit this Cross-Site Scripting (XSS) vulnerability to target…

Drupal CKEditor FI

tg: zranitelnost

· NCSC-FI · Drupal core - Moderately critical - Third-party libraries - SA-CORE-2026-013

Issabel Framework Hard-coded JWT Key RCE via pbxapi/manager/originate

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv4.0: 9.3, CVEs: CVE-2026-89026, Summary: The Issabel Framework, the web framework supporting Issabel PBX software, before commit b97dbaf contains a hard-coded HS256 JWT signing key in the pbxapi index.php file that is identical across every installation, allowing unauthenticated remote attackers to forge valid bearer tokens. Attackers can use the forged token to call the manager originate endpoint with the System…

EPSS 0.01 CVSS 9.3 CVE-2026-89026 Issabel FI

tg: zneužíváno tg: zranitelnost tp: identita

· NCSC-FI · Issabel Framework Hard-coded JWT Key RCE via pbxapi/manager/originate

Cisco - Multiple security advisories 2026-09-16

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: 10.0, CVEs: CVE-2026-20350, CVE-2026-20309, CVE-2026-20247, CVE-2026-20300, CVE-2026-20176, CVE-2026-20211, CVE-2026-20307, CVE-2026-76448, CVE-2026-76449, CVE-2026-76450, CVE-2026-76451, CVE-2026-76439, CVE-2026-76444, CVE-2026-76446, CVE-2026-76447, CVE-2026-20071, CVE-2026-20072, CVE-2026-76431, CVE-2026-76432, CVE-2026-76433 (+59 other associated CVEs), Summary: Advisories: Cisco ThousandEyes Virtual…

CVSS 10.0 Cisco FI

tg: zranitelnost

· NCSC-FI · Cisco - Multiple security advisories 2026-09-16

SPOJENO PŘES CVE Acronis - Local privilege escalation due to insecure file permissions

Classification: Severe, Solution: Official Fix, Exploit Maturity: High, CVSSv3.0: 7.8, CVEs: CVE-2026-87886, Summary: Exploitation of this vulnerability has been detected in the wild in limited, targeted attacks against Acronis Backup plugin for cPanel & WHM deployments. Affected products Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021 Acronis Backup extension for Plesk (Linux) before build 1.8.11.638

KEV ✓ EPSS 0.00 CVSS 7.8 CVE-2026-87886 Acronis cPanel Plesk WebHost Manager FI IT US

tg: zneužíváno tg: zranitelnost

· NCSC-FI · Acronis - Local privilege escalation due to insecure file permissions · CSIRT Itálie (ACN) · Acronis: rilevato sfruttamento in rete della CVE-2026-87886 · CISA KEV · Acronis Backup Incorrect Default Permissions Vulnerability (CVE-2026-87886) · BleepingComputer · Acronis warns of actively exploited flaw in its cPanel backup plugin

SPOJENO AI Google fixes actively exploited Android zero-day on Pixel devices

Google has released the September 2026 security patches to address 110 vulnerabilities affecting its Pixel devices, including one zero-day flaw actively exploited in targeted attacks. [...]

KEV ✓ EPSS 0.00 CVE-2026-58704 Google veřejná správa FI US IT FR

tg: zneužíváno tg: zranitelnost tg: regulace tg: novinka v produktu

SPOJENO AI Oracle Critical Security Patch Update, September 2026 Review

Oracle released its September edition of Critical Security Patch Update. The update received patches for 673 security vulnerabilities. Some of the vulnerabilities addressed in this update impact more than one product. These patches address vulnerabilities in various product families, including third-party components in Oracle products. Out of the 673 security updates published, a total of 104 (15.5%) vulnerabilities are rated critical, 503 are rated as important (74.7%), and 59 are rated as…

EPSS 0.00 CVSS 10.0 CVE-2026-83154 CVE-2026-83196 CVE-2026-83197 CVE-2026-83201 CVE-2026-83202 CVE-2026-83229 CVE-2026-83268 CVE-2026-83269 CVE-2026-83282 CVE-2026-83283 CVE-2026-83327 CVE-2026-83452 CVE-2026-83462 Oracle FI CA US IT

tg: zranitelnost tg: rozbor

Chrome - Stable Channel Update for Desktop

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: None, CVEs: CVE-2026-91726, CVE-2026-91721, CVE-2026-91749, CVE-2026-91724, CVE-2026-91728, CVE-2026-91734, CVE-2026-91727, CVE-2026-91743, CVE-2026-91744, CVE-2026-91712, CVE-2026-91748, CVE-2026-91720, CVE-2026-91731, CVE-2026-91747, CVE-2026-91733, CVE-2026-91741, CVE-2026-91709, CVE-2026-91717, CVE-2026-91735, CVE-2026-91708 (+22 other associated CVEs), Summary: The Stable channel has been updated to…

FI

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Chrome - Stable Channel Update for Desktop

Multiples vulnérabilités dans ISC BIND (17 septembre 2026)

De multiples vulnérabilités ont été découvertes dans ISC BIND. Elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à l'intégrité des données et un contournement de la politique de sécurité.

EPSS 0.00 CVE-2026-75029 CVE-2026-76163 CVE-2026-77119 CVE-2026-77692 CVE-2026-78301 CVE-2026-80274 CVE-2026-81563 CVE-2026-81736 ISC FR

tg: zranitelnost tp: DDoS

· CERT-FR – avis · Multiples vulnérabilités dans ISC BIND (17 septembre 2026)

40

SPOJENO AI Iranian hackers use CHOSEN BRICK Windows malware to spy on targets

Government agencies are warning that Iranian state-linked hackers are using a Windows malware strain named CHOSEN BRICK to target dissidents, activists, and journalists worldwide. [...]

média US GB

tg: varování tg: zranitelnost tg: rozbor tg: návod tp: malware tp: špionáž

The Apple Security Update Review for September 2026

Welcome back to our monthly look at Apple security patches. This release shows Apple is not immune to the new normal of AI-assisted vulnerability discovery as they release patches for 273 total CVEs.For the September 2026 release, Apple released 273 unique CVEs across macOS 27 (Golden Gate), macOS Sequoia 15.8, macOS Tahoe 26.7, iOS / iPadOS 27, visionOS 27, watchOS 27, tvOS 27, iOS / iPadOS 26.7, Safari 27, and Xcode 27. This patch release actually happened a couple of days ago, but since…

Apple US

tg: zneužíváno tg: zranitelnost tg: rozbor

· ZDI Blog · The Apple Security Update Review for September 2026

ISC BIND security advisory (AV26-931)

Serial Number: AV26-931Date: September 16, 2026 As of September 16, 2026, ISC is affected by vulnerabilities in the following product: ISC BIND 9 Prior to or equal to 9.18.50 Prior to or equal to 9.18.50-S1 Prior to or equal to 9.20.27 Prior to or equal to 9.20.27-S1 Prior to or equal to 9.21.25 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. BIND 9 Software Vulnerability Matrix

ISC CA

tg: zranitelnost

· Cyber Centre Kanada · ISC BIND security advisory (AV26-931)

Apple security advisory (AV26-930)

Serial Number: AV26-930Date: September 16, 2026 As of September 14, 2026, Apple is affected by vulnerabilities in the following products: iOS and iPadOS Prior to 27 Prior to 26.7 macOS Golden Gate Prior to 27 macOS Tahoe Prior to 26.7 macOS Sequoia Prior to 15.8 tvOS Prior to 27 watchOS Prior to 27 visionOS 27 Prior to 27 Safari Prior to 27 Xcode Prior to 27 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become…

Apple CA

tg: zranitelnost

· Cyber Centre Kanada · Apple security advisory (AV26-930)

Scans Targeting Hospitality Applications, (Wed, Sep 16th)

Earlier today, I noted an odd request showing up in our "First Seen" report: GET /PIAF-HMS/ HTTP/1.1 Host: [redacted] User-Agent: Farez-Sorter/1.0 Accept-Encoding: gzip This request is linked to a rather old application, a "PBX in a Flash Hospitality Management System" [1]. The last update, the addition of a license file, happened 10 years ago, and I would consider the project abandoned. However, I also noted a new vulnerability reported a couple of months ago: An SQL injection issue. A quick…

US

tg: varování tg: rozbor

· SANS Internet Storm Ctr. · Scans Targeting Hospitality Applications, (Wed, Sep 16th)

HPE security advisory (AV26-928)

Serial number: AV26-928Date: September 16, 2026 As of September 15, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products: HPE Networking EdgeConnect SD-WAN Gateways Multiple versions HPE Networking EdgeConnect SD-WAN Orchestrator Multiple versions The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. HPESBNW05135 rev.1 - Multiple Vulnerabilities in HPE Networking…

HPE CA

tg: zranitelnost

· Cyber Centre Kanada · HPE security advisory (AV26-928)

House passes bill to equip local law enforcement with scam-fighting tools

The Guarding Unprotected Aging Retirees from Deception Act (GUARD) attempts to address a common complaint from the victims of online scams like pig butchering — that such cases typically do not rise to the level of a federal investigation but local law enforcement is unequipped to properly investigate them.

veřejná správa US

tg: vymáhání práva tg: regulace tp: podvod

· The Record · House passes bill to equip local law enforcement with scam-fighting tools

[Control Systems] Phoenix Contact security advisory (AV26-927)

Serial number: AV26-927Date: September 16, 2026 As of September 16, 2026, Phoenix Contact is affected by vulnerabilities in the following products: ICE2-8IOL-G65L-V1D Prior to 1.7.4 ICE2-8IOL-K45P-RJ45 Prior to 1.7.4 ICE2-8IOL-K45S-RJ45 Prior to 1.7.4 ICE2-8IOL1-G65L-V1D Prior to 1.7.4 ICE3-8IOL-G65L-V1D Prior to 1.7.4 ICE3-8IOL-G65L-V1D-Y Prior to 1.7.4 ICE3-8IOL-K45P-RJ45 Prior to 1.7.4 ICE3-8IOL-K45S-RJ45 Prior to 1.7.4 ICE3-8IOL1-G65L-V1D Prior to 1.7.4 IOL MA8 EIP DI8 Prior to 1.7.4 IOL…

Phoenix Contact Pepperl+Fuchs Carlo Gavazzi Automation CA

tg: zranitelnost tp: průmyslové systémy

· Cyber Centre Kanada · [Control Systems] Phoenix Contact security advisory (AV26-927)

Google security advisory (AV26-926)

Serial number: AV26-926 Date: September 16, 2026 As of September 15, 2026, Google is affected by vulnerabilities in the following product: Chrome Prior to 153.0.8010.48 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. Stable Channel Update for Desktop

Google CA

tg: zranitelnost

· Cyber Centre Kanada · Google security advisory (AV26-926)

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability

Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv) models. However, it was later found that this vulnerability affects all Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software platforms. A vulnerability in the VPN and management web servers of the Cisco Secure Firewall ASA Software…

EPSS 0.01 CVE-2024-20260 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability

Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability

A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary commands as root. This vulnerability exists because a registered sftunnel peer has incorrect permissions to write an arbitrary file to any location on the device. An attacker could exploit this vulnerability by hijacking the sftunnel communication connection or being a valid registered sftunnel peer and…

EPSS 0.00 CVE-2026-20324 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability

Cisco Identity Services Engine SQL Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow a remote attacker to conduct SQL injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content…

EPSS 0.00 CVE-2026-20247 CVE-2026-20300 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine SQL Injection Vulnerabilities

Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct SQL or HQL injection attacks on an affected device. These vulnerabilities are due to insufficient validation of user-supplied input to the affected APIs before it is used to build database queries. An attacker could exploit these vulnerabilities by sending a crafted request to an affected device. A successful exploit could…

EPSS 0.00 CVE-2026-76448 CVE-2026-76449 CVE-2026-76450 CVE-2026-76451 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability

A vulnerability in the certification authentication feature of Internet Key Exchange version 2 (IKEv2) for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly. This vulnerability is due to a logic error during the certificate authentication phase of the IKEv2 connection setup. An attacker could exploit this vulnerability by…

EPSS 0.00 CVE-2026-20249 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability

Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to access or manipulate data, obtain sensitive information, or cause a reload of certificate and key material on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these…

EPSS 0.00 CVE-2026-76439 CVE-2026-76444 CVE-2026-76446 CVE-2026-76447 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability

A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause high CPU utilization on an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to improper rate limiting for syslog message 419002. An attacker could exploit this vulnerability by sending a flood of…

EPSS 0.00 CVE-2026-20154 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability

A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper resource management when handling EIGRP update messages. An attacker could exploit this vulnerability by sending crafted EIGRP updates at a high rate…

EPSS 0.00 CVE-2026-20222 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability

Cisco BroadWorks CommPilot Application Software Authorization Bypass Vulnerability

A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacker with low privileges to alter configurations on an affected device. This vulnerability is due to missing authorization checks. An attacker could exploit this vulnerability by sending a crafted HTTP request. A successful exploit could allow the attacker to alter configurations on select pages. Cisco has released software updates that address this…

EPSS 0.00 CVE-2026-76438 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco BroadWorks CommPilot Application Software Authorization Bypass Vulnerability

Cisco Nexus Dashboard Software Security Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these issues by…

EPSS 0.00 CVE-2026-20322 CVE-2026-20325 CVE-2026-20326 CVE-2026-20360 CVE-2026-20361 CVE-2026-76409 Cisco US

tg: zranitelnost tg: novinka v produktu

· Cisco PSIRT · Cisco Nexus Dashboard Software Security Hardening Release: September 2026

Cisco Secure Firewall Management Center Software Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software could allow a remote attacker to gain root access and perform session forgery or session impersonation. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com…

EPSS 0.00 CVE-2026-76412 CVE-2026-76413 CVE-2026-76420 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Secure Firewall Management Center Software Vulnerabilities

Cisco Identity Services Engine Authorization Bypass Vulnerabilities

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to modify parts of the configuration on an affected device. These vulnerabilities are due to the lack of server-side validation of Administrator permissions. An attacker could exploit these vulnerabilities by submitting a crafted HTTP request to an affected system. A successful exploit could allow…

EPSS 0.00 CVE-2026-20285 CVE-2026-20286 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Authorization Bypass Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities

Multiple vulnerabilities in the access control list (ACL) Object Group Search (OGS) implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access controls. These vulnerabilities are due to a logic error in populating group access control policies (ACPs) with OGS configured. An attacker could exploit these vulnerabilities by sending traffic that…

EPSS 0.00 CVE-2026-20120 CVE-2026-20121 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities

Cisco Identity Services Engine Command Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to perform command injection attacks on an affected device and execute arbitrary commands as the root user. To exploit these vulnerabilities, the attacker must have valid administrative credentials. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that…

EPSS 0.01 CVE-2026-20305 CVE-2026-20306 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Command Injection Vulnerabilities

Cisco Identity Services Engine Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the…

EPSS 0.00 CVE-2026-20309 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Cross-Site Scripting Vulnerability

Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to conduct path traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps…

EPSS 0.01 CVE-2026-76431 CVE-2026-76432 CVE-2026-76433 CVE-2026-76434 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities

Cisco Identity Services Engine Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing. One of them is known to be actively exploited. For more information, see Cisco…

EPSS 0.00 CVE-2026-20130 CVE-2026-20192 CVE-2026-20194 CVE-2026-20234 CVE-2026-20237 CVE-2026-20287 Cisco US

tg: zneužíváno tg: zranitelnost tg: novinka v produktu tp: identita

· Cisco PSIRT · Cisco Identity Services Engine Hardening Release: September 2026

Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability

A vulnerability in SSL/TLS certificate parsing in the Snort 2 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 2 Detection Engine to restart. This vulnerability is due to incomplete validation of the SSL certificate. An attacker could exploit this vulnerability by sending a crafted SSL connection setup request to be parsed by Snort 2. A successful exploit could allow the attacker to cause the Snort 2…

EPSS 0.00 CVE-2026-20290 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability

Cisco ThousandEyes Virtual Appliance Authenticated Web Interface Command Injection Vulnerability

A vulnerability in the web-based management interface of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to inject arbitrary operating system commands. This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by saving configuration details that contain malicious values. A successful exploit could allow the attacker to execute arbitrary operating system commands…

EPSS 0.00 CVE-2026-20350 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco ThousandEyes Virtual Appliance Authenticated Web Interface Command Injection Vulnerability

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability

A vulnerability in the DNS over TCP implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the TCP DNS response handler to unexpectedly restart, causing the device to reload. This vulnerability is due to a logic error when parsing a DNS query and tracking the size of the incoming buffers. An attacker could exploit this vulnerability by formatting a crafted…

EPSS 0.00 CVE-2026-20248 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability

Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software and Cisco Secure Firewall Management Center (FMC) Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal…

EPSS 0.00 CVE-2026-20329 CVE-2026-20330 CVE-2026-20331 CVE-2026-20332 CVE-2026-20333 CVE-2026-20334 CVE-2026-20335 CVE-2026-20336 Cisco US

tg: zneužíváno tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026

Cisco Secure Firewall Management Center Software Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software could allow a remote attacker to gain root access, download sensitive files, perform a SQL injection attack, or cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the…

EPSS 0.01 CVE-2026-20340 CVE-2026-20341 CVE-2026-20342 CVE-2026-20343 CVE-2026-20344 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Management Center Software Vulnerabilities

Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an unauthenticated, local attacker to either conduct an authentication bypass or disclose sensitive information. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com…

EPSS 0.00 CVE-2026-20071 CVE-2026-20072 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities

Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability

A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a crafted TLS 1.3 packet to an affected system through a TLS 1.3-enabled listening socket. A successful…

EPSS 0.00 CVE-2026-20135 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability

Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated attacker to perform an sftunnel authentication bypass or sftunnel denial of service (DoS) attack. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This…

EPSS 0.01 CVE-2026-20295 CVE-2026-20323 Cisco US

tg: zranitelnost tp: DDoS tp: identita

· Cisco PSIRT · Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Vulnerabilities

Cisco Identity Services Engine RADIUS Denial of Service Vulnerability

A vulnerability in the RADIUS feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain RADIUS requests. An attacker could exploit this vulnerability by sending a crafted RADIUS request directly to an affected device. A successful exploit could allow the attacker to cause the ISE node to become unavailable. For single node…

EPSS 0.00 CVE-2026-20352 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Identity Services Engine RADIUS Denial of Service Vulnerability

Cisco Identity Services Engine Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to bypass authentication to the REST API, achieve remote code execution, perform SQL injection, and conduct XML External Entity injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no…

EPSS 0.01 CVE-2026-76423 CVE-2026-76424 CVE-2026-76425 CVE-2026-76426 CVE-2026-76427 CVE-2026-76428 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Vulnerabilities

Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct SQL injections, modify data, or execute arbitrary commands on the underlying operating system on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Note: For CVE-2026-20282 and CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the scores indicate. The reason is that it…

EPSS 0.01 CVE-2026-20282 CVE-2026-20283 CVE-2026-20284 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities