Alerts

SAP Security Patch Day December 2025

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products, such as SAP NetWeaver (remote service for Xcelsius, Internet Communication Framework, Enterprise Portal, Application Server ABAP), SAP BusinessObjects Business Intelligence Platform, SAP Web Dispatcher and Internet Communication Manager (ICM), […]

SAP Security Patch Day December 2025 Read More »

Apache Security Updates – 07 December 2025

Apache has released security updates to address multiple vulnerabilities affecting Apache HTTP Server versions before 2.4.66. The addressed vulnerabilities could allow the attacker to perform denial-ofservice attacks, bypass security restrictions, obtain sensitive information, manipulate sensitive data, or execute code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Apache HTTP Server:

Apache Security Updates – 07 December 2025 Read More »

Splunk Security Updates – 04 December 2025

Splunk has released security updates to fix several vulnerabilities across multiple Splunk products. The addressed vulnerabilities could allow the attacker to cause unvalidated redirects to malicious sites, conduct denial of service attacks, perform cross-site scripting attacks, gain elevated privileges, bypass security restrictions, and obtain sensitive information from the affected products. Sample of the addressed vulnerabilities:

Splunk Security Updates – 04 December 2025 Read More »

Google Chrome Security Update – 03 December 2025

Google has released an updated Chrome version “143.0.7499.40/41” for Windows, Mac, and “143.0.7499.40” for Linux. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, perform spoofing attacks, exploit heap corruption via a crafted HTML page, bypass security restrictions, obtain sensitive information, gain elevated privileges, or gain access to the affected systems. Sample of

Google Chrome Security Update – 03 December 2025 Read More »

Aruba Security Updates – 19 November 2025

HPE Aruba Networking has released security updates to address  several vulnerabilities across multiple Aruba products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial-of-service attacks, conduct command injection attacks, hijack user sessions, or execute arbitrary code on the affected system. Sample of the addressed vulnerabilities: 1. Aruba AOS-CX Network Management Interface

Aruba Security Updates – 19 November 2025 Read More »

SonicWall Security Updates – 23 November 2025

SonicWall has released security updates to fix several vulnerabilities affecting multiple SonicWall products. The addressed vulnerabilities could allow the remote unauthenticated attacker to cause denial of service attacks, view partial users’ credential data, modify system files, gain persistent arbitrary code execution, manipulate file system paths, and cause service disruption on the affected product. Sample of

SonicWall Security Updates – 23 November 2025 Read More »

Grafana Security Updates – 23 November 2025

Grafana has released security updates to fix several vulnerabilities, including a critical vulnerability in Grafana Enterprise. The addressed vulnerabilities could allow the attacker to provision a user with a numeric external IDs, which may override internal user IDs and result in impersonation or privilege escalation. Sample of the addressed vulnerabilities: Grafana Enterprise Incorrect Privilege Assignment

Grafana Security Updates – 23 November 2025 Read More »

Fortinet Security Updates – 19 November 2025

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, bypass security restrictions, or execute arbitrary code or commands, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. FortiVoice SQL Injections in Voice and

Fortinet Security Updates – 19 November 2025 Read More »

SolarWinds Security Updates – 19 November 2025

SolarWinds has released security updates to address several vulnerabilities affecting multiple SolarWinds products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, conduct phishing attacks, execute arbitrary code on a directory via admin privileges, and gain access to the affected system. Sample of the addressed vulnerabilities: 1. SolarWinds Serv-U Logic Abuse – Remote

SolarWinds Security Updates – 19 November 2025 Read More »

Google Chrome Security Update – 18 November 2025

Google has released an updated Chrome version 142.0.7444.175/.176 for Windows, 142.0.7444.176 for Mac, and 142.0.7444.175 for Linux. The addressed vulnerabilities could allow the remote attacker to exploit heap corruption via a crafted HTML page and gain access to the affected system. Sample of the addressed vulnerabilities: Google Chrome Type Confusion in V8 Vulnerability (CVE-2025-13223): CVSS:

Google Chrome Security Update – 18 November 2025 Read More »

Cisco Security Updates – 18 November 2025

Cisco has released security updates to fix several vulnerabilities affecting Cisco Catalyst Center, both virtual and hardware appliances. The addressed vulnerabilities could allow the attacker to conduct cross-site scripting attacks, perform phishing attacks, gain elevated privileges, or execute arbitrary commands in a restricted container with root privileges, and gain access to the affected product. Sample

Cisco Security Updates – 18 November 2025 Read More »

Citrix Security Updates – 16 November 2025

Citrix has released security updates to address several vulnerabilities across multiple Citrix products. The addressed vulnerability could allow the attacker to perform denial of service attacks, conduct cross-site scripting attacks, or gain elevated privileges to the affected system. Sample of the addressed vulnerabilities: Citrix XenSource Xen Privilege Escalation Vulnerability (CVE-2025-58147): CVSS: 7.5 Attack Vector: Network

Citrix Security Updates – 16 November 2025 Read More »

Google Chrome Security Update – 16 November 2025

Google has released an updated Chrome version 142.0.7444.162/.163 for Windows, 142.0.7444.162 for Mac, and Linux. The addressed vulnerability could allow the remote attacker to execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Google Chrome Inappropriate Implementation in V8 (CVE-2025-13042): CVSS: 8.8 Attack Vector:

Google Chrome Security Update – 16 November 2025 Read More »

Fortinet Security Update – 16 November 2025

Fortinet has released a security update to fix a critical vulnerability in FortiWeb. The addressed vulnerability could allow the remote attacker to execute administrative commands via crafted HTTP or HTTPS requests, and take over admin accounts and completely compromise the affected systems. FortiWeb GUI Path Confusion Vulnerability (CVE-2025-64446): CVSS: 9.1 Attack Vector: Network Attack Complexity:

Fortinet Security Update – 16 November 2025 Read More »

Mozilla Firefox Security Updates – 13 November 2025

Mozilla has released an updated Firefox version 145, Firefox ESR versions 115.30, and 140.5 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Mozilla Firefox Sandbox Escape Vulnerability (CVE-2025-13026):

Mozilla Firefox Security Updates – 13 November 2025 Read More »

Intel Security Updates – 12 November 2025

Intel has released security updates to address several vulnerabilities affecting multiple Intel products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform denial-of-service attacks, obtain sensitive information, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Intel Computing Improvement Program (CIP) Improper Privilege Management

Intel Security Updates – 12 November 2025 Read More »

Apple Security Updates – 12 November 2025

Apple has released security updates to address multiple vulnerabilities across macOS Tahoe, Sequoia, Sonoma, and Safari. The addressed vulnerabilities could allow the attacker to perform denial of service attacks, corrupt memory, bypass security restrictions, obtain sensitive information, gain elevated privileges, execute arbitrary code, and gain unauthorized access to the affected system. Sample of the addressed

Apple Security Updates – 12 November 2025 Read More »

Microsoft November 2025 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed one actively exploited zero-day vulnerability. Microsoft has fixed (63) vulnerabilities, with (1) classified as critical, as it could allow the attacker to gain elevated privileges, perform denial of service attacks, obtain sensitive information, bypass security restrictions, or execute

Microsoft November 2025 Patch Tuesday Read More »

Zoom Security Update – 11 November 2025

Zoom has released a security update to fix multiple vulnerabilities in Zoom Client for Windows, macOS, Linux, and Android. The addressed vulnerabilities could allow the attacker to conduct cross-site scripting attacks, obtain sensitive information, or gain elevated privileges to the affected system. Sample of the addressed vulnerabilities: 1. Zoom Workplace Clients-Inefficient Regular Expression Complexity Vulnerability

Zoom Security Update – 11 November 2025 Read More »