Classification: Severe, Solution: Official Fix, Exploit Maturity: Functional, CVSSv3.1: 8.8, CVEs: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, CVE-2026-74469, Summary: A coordinated disclosure has made public four Linux kernel vulnerabilities capable of local privilege escalation to root: DirtyAH6 (CVE-2026-80844), TUNderflow (CVE-2026-81000), PPPoEject (CVE-2026-68121) and DiagSpill (CVE-2026-74469). Public proof-of-concept exploits are available. The first three generally require…
Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv4.0: 8.8, CVEs: CVE-2026-15579, Summary: Moxa has disclosed an out-of-bounds write vulnerability in the Web login functionality of TN-4500B Series Ethernet switches. The vulnerability can be exploited remotely without authentication by supplying an overly long username, potentially causing a buffer overflow and denial of service. Moxa has released firmware 2.1, which addresses the vulnerability. Affected…
Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.6, CVEs: CVE-2026-93374, CVE-2026-93372, CVE-2026-93375, CVE-2026-93382, CVE-2026-93387, CVE-2026-93373, CVE-2026-93381, CVE-2026-93379, CVE-2026-93377, CVE-2026-93380, CVE-2026-93384, CVE-2026-93383, CVE-2026-93376, CVE-2026-93378, CVE-2026-93385, CVE-2026-93386, Summary: Google released Chrome 153.0.8010.52/.53 for Windows/Mac and 153.0.8010.52 for Linux on 17 September. The update contains 16 security…
Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-13684, CVE-2026-13639, CVE-2026-13673, CVE-2026-6205, CVE-2026-13635, CVE-2026-13623, CVE-2026-13666, CVE-2026-13683, Summary: Synology released a security update for DSM on 18 September 2026 addressing multiple vulnerabilities, including two CVSS 9.8 flaws that can allow remote attackers to read/write arbitrary files and cause denial of service.
Serial number: AV26-942Date: September 18, 2026 As of September 18, 2026, ABB published a security advisory to address vulnerabilities in the following product: Freelance Controller Multiple versions and models The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Freelance SECURITY - Missing Length Check CVE ID: CVE-2023-5778 ABB Cyber security alerts and notifications
Serial number: AV26-941Date: September 18, 2026 As of September 17, 2026, SolarWinds is affected by a vulnerability in the following product: SolarWinds Access Rights Manager Prior to 2026.2 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. SolarWinds Access Rights Manager Unauthenticated Remote Code Execution Vulnerability (CVE-2026-28326)
Serial number: AV26-940Date: September 18, 2026 As of September 9, 2026, Arista Networks is affected by vulnerabilities in the following product: EOS Multiple versions and platforms The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Advisory 0174 Arista Networks Advisories & Notices
Serial number: AV26-939Date: September 18, 2026 As of September 17, 2026, Google is affected by vulnerabilities in the following product: Chrome Prior to 153.0.8010.53 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. Stable Channel Update for Desktop
Serial number: AV26-937Date: September 18, 2026 As of September 4, 2026, Advantech is affected by vulnerabilities in the following products: EKI-1242EIMS Prior to or equal to V2.00.01 EKI-1242IEIMS Prior to or equal to V2.00.01 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Vulnerabilities Identified in EKI-1242EIMS/EKI-1242IEIMS (PDF) Advantech Security Advisories
Rilevato PoC pubblico per la la vulnerabilità identificata tramite la CVE-2026-81934 in Redis, sistema per l'archiviazione e la gestione di dati in memoria.
Serial number: AV26-936Date: September 18, 2026 As of September 17, 2026, Grafana is affected by vulnerabilities in the following product: Grafana OSS Version 12.3.0 to 12.4.10 Version 13.0.0 to 13.08 Version 13.1.0 to 13.1.5 Version 13.2.0 to 13.2.1 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Geomap MapLibre XSS Grafana Security Advisories
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-39682 Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk establishes vulnerability management…
Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code with root privileges on management systems. [...]
Risolte molteplici vulnerabilità di cui 3 con gravità ”alta” in Grafana, nota applicazione web per la visualizzazione e l’analisi interattiva di dati. Tali vulnerabilità, qualora sfruttate, potrebbero consentire ad un utente malintenzionato di elevare i propri privilegi e/o di eseguire codice arbitrario remoto sui sistemi interessati
Check Point heeft een kwetsbaarheid verholpen in Check Point's Security Management and Log Servers. De kwetsbaarheid betreft een stack overflow die optreedt tijdens het ongeauthenticeerde inlogproces. Een aanvaller kan deze kwetsbaarheid op afstand misbruiken om willekeurige code uit te voeren met rootrechten. Hierdoor kan de aanvaller authenticatie omzeilen en volledige controle over het systeem verkrijgen. Voor exploitatie is geen voorafgaande authenticatie vereist.
Rilasciato aggiornamento che risolve 2 vulnerabilità di sicurezza, con gravità “critica”, in pgAdmin, nota piattaforma di amministrazione e sviluppo open source per PostgreSQL. Tali vulnerabilità, qualora sfruttate, potrebbero consentire a un utente malintenzionato di eludere i meccanismi di autenticazione e di scrivere file arbitrari sul filesystem dei sistemi interessati
Google ha rilasciato un aggiornamento per il browser Chrome al fine di correggere 16 nuove vulnerabilità di sicurezza, di cui 2 con gravità “critica” e 7 con gravità “alta”.
Stored Cross-Site Scripting (XSS) in T-Systems’ TAO 2.0 Fri, 09/18/2026 - 11:30 Aviso Affected Resources TAO 2.0 Description INCIBE has coordinated the publication of a medium-severity vulnerability affecting T-Systems’ TAO 2.0 suite, a management platform for the public sector. The vulnerability was discovered by Cayetano de Juan Úbeda.This vulnerability has been assigned the following code, CVSS v4.0 base score, CVSS vector and CWE vulnerability type:CVE-2026-92976: CVSS v4.0: 5.1 | CVSS:4.0…
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Linux Mint Xreader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-19772.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20176.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20211.
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.9. The following CVEs are assigned: CVE-2026-20235.
The FBI and Defense Department partnered with Japan’s National Police Agency and law enforcement agencies in Australia and Germany on a new advisory about “WaterPlum” — a group of cyber actors allegedly stealing cryptocurrency from job applicants by posing as AI or blockchain companies.
Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.0: 9.9, CVEs: CVE-2026-13348, CVE-2026-31431, CVE-2026-13336, CVE-2026-13337, CVE-2025-6625, CVE-2024-4872, CVE-2024-3980, CVE-2024-3982, CVE-2024-7940, CVE-2024-7941, CVE-2026-15688, CVE-2026-86520, CVE-2026-86689, CVE-2026-77960, CVE-2026-13584, Summary: CISA released eight Industrial Control Systems (ICS) Advisories. These advisories provide timely information about current security issues,…
Classification: Severe, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv4.0: 9.1, CVEs: CVE-2026-81642, CVE-2026-81634, CVE-2026-82717, CVE-2026-77955, CVE-2026-78227, CVE-2026-80225, CVE-2026-82720, CVE-2026-85501, CVE-2026-77860, Summary: Fix CVE-2026-81642, Heap buffer overflow and possible Remote Code Execution when digesting DNSKEY. Thanks to Yuqi Qiu and Xiang Li from Nankai University, AOSP Lab for the report. Fix CVE-2026-81634, Possible heap buffer overflow during DNSSEC…
De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un déni de service à distance.
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, une élévation de privilèges et un déni de service à distance.
De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
Une vulnérabilité a été découverte dans Kaspersky Secure Mail Gateway. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance.
De multiples vulnérabilités ont été découvertes dans WordPress. Elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données, une injection de code indirecte à distance (XSS) et un contournement de la politique de sécurité.
Serial Number: AV26-935Date: September 17, 2026 As of September 16, 2026, Tanium is affected by a vulnerability in the following product: Threat Response Prior to Update 15 (v4.12.317) Prior to Update 8 (v4.17.289) Prior to Update 25 (v4.9.447) The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. TAN-2026-047 - Tanium Security Advisories All Advisories - Tanium Security Advisories
Serial number: AV26-934Date: September 17, 2026 As of September 17, 2026, Dell is affected by vulnerabilities in the following products: Dell Networking OS10 Prior to 10.6.1.3 Dell OpenManage Server Administrator (OMSA) Multiple versions and models Elastic Cloud Storage (ECS) Prior to 4.4.0.0 ObjectScale Prior to 4.4.0.0 Dell Update Package (DUP) Framework Prior to 26.07.03 Dell Wyse Management Suite Prior to 2605.0.3.683 Dell Repository Manager (DRM) Prior to 3.5.2 The Cyber Centre encourages…
Serial number: AV26-933Date: September 17, 2026 As of September 16, 2026, Check Point is affected by a vulnerability in the following products: Security Management Server, Multi-Domain Security Management Server, Log Server and Multi-Domain Log Server R81.20 with Jumbo Hotfix Take 166 and prior R82 with Jumbo Hotfix Take 126 and prior R82.10 with Jumbo Hotfix Take 44 and prior R82.20 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary…
Number: AL26-021Date: September 17, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security ("Cyber Centre") is also available to provide additional assistance regarding the content of this Alert to recipients as requested. Details The Canadian…
Serial number: AV26-932Date: September 17, 2026 As of September 16, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Secure Firewall Threat Defense (FTD) Software Prior to 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2 and 10.1.0 Cisco Secure Firewall Management Center (FMC) Software Prior to 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2 and 10.1.0 Cisco Identity Services Engine (ISE) Software Prior to 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7 and 3.5 Patch 4…
Questo CSIRT ha recentemente registrato, nel contesto nazionale, un aumento significativo di sfruttamenti attivi della CVE-2026-48907 – già sanata dal vendor e trattata nell’ambito dell’AL02/260615/CSIRT-ITA – ai danni di server web esposti. Tale vulnerabilità interessa il plugin Joomla Content Editor (JCE), estensione per il noto Content Management System (CMS) Joomla!.
Rilevato lo sfruttamento in rete di una vulnerabilità, identificata tramite la CVE-2026-59822, in LiteLLM di BerriAI, server proxy impiegato come gateway per l'accesso a modelli linguistici di grandi dimensioni (LLM). La vulnerabilità consente a un attaccante remoto non autenticato di eludere i meccanismi di autenticazione e accedere agli strumenti MCP senza disporre di credenziali valide.
Aggiornamenti di sicurezza Dell Technologies sanano molteplici vulnerabilità, di cui una con gravità "critica" e 11 con gravità "alta", in vari prodotti.
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal allows an unauthorized attacker to perform spoofing over a network.
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.
Improper neutralization of special elements used in a command ('command injection') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to disclose information over a network.
Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an authorized attacker to elevate privileges over a network.