Alerts

Microsoft February 2026 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed six actively exploited and three publicly disclosed zero-day vulnerabilities. Microsoft has fixed (59) vulnerabilities that could allow the attacker to gain elevated privileges, perform denial-of-service attacks, obtain sensitive information, conduct spoofing attacks, bypass security restrictions, or execute arbitrary […]

Microsoft February 2026 Patch Tuesday Read More »

Fortinet Security Updates – 11 February 2026

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to bypass authentication mechanisms, conduct SQL injection and cross-site scripting attacks, perform request smuggling attacks, execute unauthorized code or commands, gain elevated privileges, obtain sensitive information, bypass firewall and access control policies, or gain unauthorized

Fortinet Security Updates – 11 February 2026 Read More »

SAP Security Patch Day February 2026

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products, such as SAP NetWeaver Application Server ABAP and ABAP Platform, SAP NetWeaver, SAP Business One, SAP Business Workflow, SAP S/4HANA, SAP Supply Chain Management, SAP BusinessObjects Business Intelligence Platform,

SAP Security Patch Day February 2026 Read More »

Cisco Security Updates – 08 February 2026

Cisco has released security updates to address several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, redirect users to malicious websites, conduct cross-site scripting attacks, upload arbitrary files, execute arbitrary commands, gain elevated privileges, and gain access to the affected products. Sample of addressed vulnerabilities:

Cisco Security Updates – 08 February 2026 Read More »

Google Chrome Security Update – 04 February 2026

Google has released an updated Chrome version 144.0.7559.132/.133 for Windows and Mac, and version 144.0.7559.132 for Linux. The addressed vulnerabilities could allow the attacker to obtain sensitive information, exploit heap corruption via a crafted HTML page, execute arbitrary code, and gain access to the affected product. Sample of the addressed vulnerabilities: Google Chrome Heap Buffer

Google Chrome Security Update – 04 February 2026 Read More »

Progress Security Updates – 03 February 2026

Progress has released security updates to fix multiple vulnerabilities across several Progress products. The addressed vulnerabilities could allow the attacker to execute arbitrary commands and gain access by exploiting unsanitized input in the API input parameters to the affected system. Sample of the addressed vulnerabilities: Progress LoadMaster UI/API Command Injection Remote Code Execution Vulnerability (getcipherset)

Progress Security Updates – 03 February 2026 Read More »

OpenSSL Security Updates – 01 February 2026

OpenSSL has released security updates to address several vulnerabilities affecting OpenSSL Software Services. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: OpenSSL Stack Buffer Overflow in CMS AuthEnvelopedData Parsing Vulnerability (CVE-2025-15467): CVSS: 9.8 Attack Vector: Network

OpenSSL Security Updates – 01 February 2026 Read More »

SolarWinds Security Updates – 01 February 2026

SolarWinds has released security updates to address several vulnerabilities affecting multiple SolarWinds products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, gain unauthorized administrative access using the client user account, execute arbitrary code, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. SolarWinds Web Help Desk Authentication Bypass

SolarWinds Security Updates – 01 February 2026 Read More »

Ivanti Security Update – 01 February 2026

Ivanti has released a security update to fix multiple vulnerabilities across Ivanti Endpoint Manager Mobile (EPMM). The addressed vulnerabilities could allow the unauthenticated attacker to execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: Ivanti Endpoint Manager Code Execution Vulnerability (CVE-2026-1281): CVSS: 9.8 Attack Vector: Network Attack Complexity: Low

Ivanti Security Update – 01 February 2026 Read More »

Fortinet Security Update – 28 January 2026

Fortinet has released a security update to fix a critical vulnerability across multiple Fortinet products. addressed vulnerability could allow the attacker with a FortiCloud account and a registered device to log into other devices registered to other accounts, if FortiCloud SSO authentication is enabled on those devices. Fortinet FortiOS, FortiManager, and FortiAnalyzer Security Bypass Vulnerability

Fortinet Security Update – 28 January 2026 Read More »

Grafana Security Updates – 28 January 2026

Grafana has released security updates to fix several vulnerabilities in Grafana Enterprise. The addressed vulnerabilities could allow the remote attacker to gain elevated privileges or perform denial-of-service attacks on the affected systems. The addressed vulnerabilities: 1. Grafana Cross-Dashboard Privilege Escalation via Permission Management Vulnerability (CVE-2026-21721): CVSS: 8.1 Attack Vector: Network Attack Complexity: Low Privileges Required:

Grafana Security Updates – 28 January 2026 Read More »

Mozilla Firefox Security Update – 28 January 2026

Mozilla has released an updated Firefox version 147.0.2 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, corrupt memory, execute arbitrary code, and gain access to the affected system. Sample of the addressed vulnerabilities: Mozilla Use-After-Free in the Layout: Scrolling and Overflow Component Vulnerability (CVE-2026-24869): CVSS: 8.1 Attack Vector:

Mozilla Firefox Security Update – 28 January 2026 Read More »

Microsoft Security Updates – 27 January 2026

Microsoft has released a security update to fix a vulnerability across multiple versions of Microsoft Office. The addressed vulnerability could allow the local attacker to bypass security restrictions to the affected system. Microsoft Office Security Feature Bypass Vulnerability (CVE-2026-21509): CVSS: 7.8 Attack Vector: Local Attack Complexity: Low Privileges Required: None User Interaction: Required Consequences: Bypass

Microsoft Security Updates – 27 January 2026 Read More »

GNU InetUtils Security Update – 26 January 2026

GNU InetUtils has released a security update to fix a critical vulnerability affecting the telnetd service in GNU InetUtils versions from 1.9.3 through 2.7. The addressed vulnerability could allow the attacker to bypass authentication controls due to improper handling of the user-supplied USER environment variable. The telnetd service passes this variable directly to /usr/bin/login without

GNU InetUtils Security Update – 26 January 2026 Read More »

Cisco Security Updates – 22 January 2026

Cisco has released security updates to fix several vulnerabilities across multiple Cisco products. The addressed vulnerabilities could allow the attacker to conduct cross-site scripting attacks, escalate privileges, perform denial-of-service attacks, obtain sensitive information, or execute arbitrary commands/code and gain access to the affected systems. Sample of addressed vulnerabilities: 1. Cisco Unified Communications Products Remote Code

Cisco Security Updates – 22 January 2026 Read More »

Oracle Security Patch Update – 21 January 2026

Oracle released its patch update for January 2026, containing 337 new security patches for multiple affected products in Oracle and third-party components. The addressed vulnerabilities could allow the attacker to perform various attacks, such as obtaining sensitive information, conducting denial of service attacks, performing data manipulation, or executing arbitrary code and gaining access to the

Oracle Security Patch Update – 21 January 2026 Read More »

Google Chrome Security Update – 21 January 2026

Google has released an updated Chrome version 144.0.7559.96/.97 for Windows and Mac, and version 144.0.7559.96 for Linux. The addressed vulnerabilities could allow the remote attacker to exploit object corruption and heap corruption via a crafted HTML page, perform UI spoofing and domain spoofing, bypass security restrictions, obtain sensitive information, spoof the contents of the Omnibox,

Google Chrome Security Update – 21 January 2026 Read More »

Palo Alto Security Updates – 15 January 2026

Palo Alto has released security updates to fix several vulnerabilities affecting multiple Palo Alto products. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, bypass security restrictions, expose user credentials, obtain sensitive information, escalate privileges, execute arbitrary commands, and gain access to the affected product. Sample of the addressed vulnerabilities: 1.

Palo Alto Security Updates – 15 January 2026 Read More »

Mozilla Firefox Security Updates – 14 January 2026

Mozilla has released an updated Firefox version 147, Firefox ESR versions 115.32, and 140.7 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, corrupt memory, perform denial of service attacks, obtain sensitive information, execute arbitrary code, and gain access to the affected system. Sample of the addressed vulnerabilities: 1.

Mozilla Firefox Security Updates – 14 January 2026 Read More »