← nejvýznamnější zprávy · všechny zprávy

poslední zpráva

SPOJENO PŘES CVE KEV ✓ (2 z 2) EPSS 0.02 (nejvyšší)

TrueConf security advisory (AV26-835)

Serial Number: AV26-835Date: August 20, 2026 As of August 19, 2026, TrueConf is affected by a vulnerability in the following product: TrueConf Server 5.3.x versions prior to 5.3.9 5.4.x versions prior to 5.4.9 5.5.x versions prior to 5.5.5 On August 20, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-72529 and CVE-2026-72530 to their Known Exploited Vulnerabilities (KEV) Database. The Cyber Centre encourages users and administrators to review the provided web links…

Číst originál na Cyber Centre Kanada →

2 zprávy z 2 zdrojů · první · zachyceno CZ · EN/orig

TrueConf veřejná správa CA US

CVE v události 2

CVEhodnoceníKEVEPSS
CVE-2026-72529 9.8 3.1 · Kaspersky 9.3 4.0 · Kaspersky KEV ✓ 0.01
CVE-2026-72530 9.5 4.0 · Kaspersky 9.0 3.1 · Kaspersky KEV ✓ 0.02

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.

Jak se o tom psalo 2

  1. · Cyber Centre Kanada CA nadpis události

    TrueConf security advisory (AV26-835)

    Serial Number: AV26-835Date: August 20, 2026 As of August 19, 2026, TrueConf is affected by a vulnerability in the following product: TrueConf Server 5.3.x versions prior to 5.3.9 5.4.x versions prior to 5.4.9 5.5.x versions prior to 5.5.5 On August 20, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-72529 and CVE-2026-72530 to their Known Exploited Vulnerabilities (KEV) Database. The Cyber Centre encourages users and administrators to review the provided web links…

  2. · zachyceno · CISA Advisories US

    CISA Adds Two Known Exploited Vulnerabilities to Catalog

    CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-72529 TrueConf Server Missing Authentication for Critical Function Vulnerability CVE-2026-72530 TrueConf Server Code Injection Vulnerability These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates…