Alerts

Aruba Security Updates – 20 October 2025

Aruba has released security updates to fix several vulnerabilities across multiple HPE Aruba products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, bypass security restrictions, manipulate files, or execute arbitrary code/commands and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Unauthorized Filesystem Operations in System Firmware […]

Aruba Security Updates – 20 October 2025 Read More »

ConnectWise Security Update – 19 October 2025

ConnectWise has released a security update to fix multiple vulnerabilities in ConnectWise Automate. The addressed vulnerabilities could allow the attacker to perform adversary-inthe- middle (AitM) attacks to view or modify traffic or substitute malicious updates and obtain sensitive information by configuring agents to communicate over HTTP instead of HTTPS. Sample of the addressed vulnerabilities: ConnectWise

ConnectWise Security Update – 19 October 2025 Read More »

Mozilla Firefox Security Updates – 16 October 2025

Mozilla has released an updated Firefox version 144, Firefox ESR versions 115.29 and 140.4 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, perform cross-site scripting attacks, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Mozilla Firefox

Mozilla Firefox Security Updates – 16 October 2025 Read More »

F5 Security Updates – 15 October 2025

F5 has released security updates to address several vulnerabilities affecting multiple F5 products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, corrupt memory, bypass security restrictions, gain elevated privileges, obtain sensitive information, execute arbitrary code/commands, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. F5OS-A and

F5 Security Updates – 15 October 2025 Read More »

Adobe Security Updates – 15 October 2025

Adobe has released security updates to address several vulnerabilities across multiple Adobe products. The addressed vulnerabilities could allow the attacker to perform denial of service or cross-site scripting attacks, bypass security restrictions, gain elevated privileges, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities: 1. Adobe Connect Cross-Site

Adobe Security Updates – 15 October 2025 Read More »

Fortinet Security Updates – 15 October 2025

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, bypass security restrictions, conduct cross-site scripting or denial of service attacks, read arbitrary files via uploading a malicious solution pack, or execute arbitrary code and gain access to

Fortinet Security Updates – 15 October 2025 Read More »

Ivanti Security Updates – 15 October 2025

Ivanti has released security updates to fix several vulnerabilities across multiple Ivanti products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, gain elevated privileges, manipulate data, obtain sensitive information, or execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Ivanti Endpoint Manager Path Traversal Vulnerability

Ivanti Security Updates – 15 October 2025 Read More »

Microsoft October 2025 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed six zero-day vulnerabilities. Microsoft has fixed (175) vulnerabilities, with (5) classified as critical, as they could allow the attacker to gain elevated privileges, perform denial of service attacks, obtain sensitive information, bypass security restrictions, or execute arbitrary code

Microsoft October 2025 Patch Tuesday Read More »

Veeam Security Update – 14 October 2025

Veeam has released a security update to fix several vulnerabilities across multiple Veeam products. The addressed vulnerabilities could allow the attacker to gain elevated privileges or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Veeam Backup & Replication Remote Code Execution Vulnerability (CVE- 2025-48983): CVSS: 9.9 Attack

Veeam Security Update – 14 October 2025 Read More »

SAP Security Patch Day October 2025

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products, such as SAP NetWeaver, SAP S/4HANA, SAP Supplier Relationship Management, SAP NetWeaver Application Server ABAP, SAP BusinessObjects, SAP Print Service, and SAP Commerce Cloud. The attacker could exploit some

SAP Security Patch Day October 2025 Read More »

Juniper Security Updates – 12 October 2025

Juniper has released security updates to fix several vulnerabilities affecting multiple Juniper Networks products. The addressed vulnerabilities could allow the remote attacker to perform denial of service or cross-site scripting attacks, obtain sensitive information, bypass security restrictions, gain elevated privileges, or execute arbitrary commands and gain access to the affected system. Sample of the addressed

Juniper Security Updates – 12 October 2025 Read More »

Google Chrome Security Update – 12 October 2025

Google has released an updated Chrome version 141.0.7390.65/.66 for Windows, Mac, and 141.0.7390.65 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities: Google Chrome Heap Buffer Overflow in

Google Chrome Security Update – 12 October 2025 Read More »

Grafana Security Updates – 12 October 2025

Grafana has released security updates to address several vulnerabilities affecting multiple Grafana plugins. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, perform denial of service attacks, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Grafana Image Renderer Plugin Remote Code Execution Vulnerability

Grafana Security Updates – 12 October 2025 Read More »

Elastic Security Updates – 08 October 2025

Elastic has released security updates to address several vulnerabilities affecting multiple Elastic products. The addressed vulnerabilities could allow the attacker to perform cross-site scripting attacks, obtain sensitive information, or gain elevated privileges to the affected products. Sample of the addressed vulnerabilities: 1. Elastic Kibana Cross-Site Scripting Vulnerability (CVE-2025-25009): CVSS: 8.7 Attack Vector: Network Attack Complexity:

Elastic Security Updates – 08 October 2025 Read More »

Redis Security Updates – 08 October 2025

Redis has released security updates to fix several vulnerabilities affecting all Redis Software releases. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, gain elevated privileges, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities: Lua Use-After-Free Remote Code Execution Vulnerability (CVE 2025-49844): CVSS:

Redis Security Updates – 08 October 2025 Read More »

Splunk Security Updates – 07 October 2025

Splunk has released security updates to fix several vulnerabilities across multiple Splunk products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, conduct cross-site scripting attacks, conduct denial of service attacks, or gain access to the affected product. Sample of the addressed vulnerabilities: 1. Splunk Enterprise Unauthenticated Blind Server Side Request Forgery (SSRF)Vulnerability

Splunk Security Updates – 07 October 2025 Read More »

Oracle Security Update – 06 October 2025

Oracle has released a critical security update to fix a zero-day vulnerability across Oracle E-Business Suite, versions 12.2.3-12.2.14. The addressed vulnerability could allow the remote unauthenticated attacker to execute arbitrary code over HTTP and gain access to the affected product. Oracle E-Business Suite Remote Code Execution Vulnerability (CVE-2025-61882): CVSS: 9.8 Attack Vector: Network Attack Complexity:

Oracle Security Update – 06 October 2025 Read More »

Google Chrome Security Update – 02 October 2025

Google has released an updated Chrome version 141.0.7390.54/55 for Windows, Mac, and 141.0.7390.54 for Linux. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, cause application instability/crashes, obtain sensitive information, or execute arbitrary code, and gain access to the affected system by persuading a victim to visit a specially crafted website. Sample

Google Chrome Security Update – 02 October 2025 Read More »

Mozilla FireFox Security Updates – 02 October 2025

Mozilla has released an updated Firefox version 143.0.3 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, execute arbitrary code, and gain access to the affected system. The addressed vulnerabilities: 1. Mozilla Firefox Sandbox escape due to integer overflow in the Graphics: Canvas2D component (CVE-2025-11152): CVSS:

Mozilla FireFox Security Updates – 02 October 2025 Read More »