Alerts

Fortinet Security Updates – 10 July 2025

Fortinet has released security updates to fix several vulnerabilities across multiple Fortinet products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, or execute arbitrary code and gain access to the affected products. Sample of the addressed vulnerabilities: 1. FortiWeb Unauthenticated SQL Injection in GUI Vulnerability (CVE-2025-25257): CVSS: 9.6 Attack […]

Fortinet Security Updates – 10 July 2025 Read More »

Aruba Security Updates – 10 July 2025

Aruba has released security updates to fix several vulnerabilities across multiple HPE Aruba products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, perform server-side request forgery attacks, or execute arbitrary code and gain access to the affected product. Sample of the addressed vulnerabilities: 1. HPE Networking Instant on Access Points Hardcoded Credential

Aruba Security Updates – 10 July 2025 Read More »

Zoom Security Update – 09 July 2025

Zoom has released a security update to fix multiple vulnerabilities in Zoom Client for Windows, macOS, and Linux. The addressed vulnerabilities could allow the remote attacker to perform denial of service attacks or obtain sensitive information from the affected system. Sample of the addressed vulnerabilities: 1. Zoom Workplace for Linux Improper Certificate Validation Vulnerability (CVE-2025-46788):

Zoom Security Update – 09 July 2025 Read More »

Adobe Security Updates – 09 July 2025

Adobe has released security updates to address several vulnerabilities across multiple Adobe products. The addressed vulnerabilities could allow the attacker to bypass security restrictions, gain elevated privileges, conduct denial-of-service attacks, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. Adobe Experience Manager (AEM) Forms

Adobe Security Updates – 09 July 2025 Read More »

Ivanti Security Updates – 09 July 2025

Ivanti has released security updates to fix several vulnerabilities across multiple Ivanti products. The addressed vulnerabilities could allow the attacker to trigger denial of service attacks, perform server-side request forgery attacks, conduct carriage return line feed injection attacks, obtain sensitive information, or execute arbitrary code and gain access to the affected system. Sample of the

Ivanti Security Updates – 09 July 2025 Read More »

Microsoft July 2025 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed one zero-day vulnerability. Microsoft has fixed (130) vulnerabilities, with one classified as critical, as they could allow the attacker to gain elevated privileges, perform denial of service attacks, obtain sensitive information, bypass security restrictions, or execute arbitrary code

Microsoft July 2025 Patch Tuesday Read More »

Grafana Security Updates – 08 July 2025

Grafana has released security updates to address multiple vulnerabilities affecting Grafana. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, obtain sensitive information, or perform denial of service attacks on the affected product. Sample of the addressed vulnerabilities: 1. Authorization Vulnerability In /apis Allows Authenticated Bypass for All Dashboard Permissions (CVE-2025-3260): CVSS:

Grafana Security Updates – 08 July 2025 Read More »

SAP Security Updates – 08 July 2025

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released a patch that fixes several vulnerabilities affecting multiple SAP products such as SAP Supplier Relationship Management, SAP NetWeaver, SAP S/4HANA and SAP SCM, SAP GRC, SAP Business Warehouse, SAP Business Objects Business Intelligence Platform, SAP MDM Server, SAP Business

SAP Security Updates – 08 July 2025 Read More »

Microsoft Edge Security Update – 02 July 2025

Microsoft has released an updated Microsoft Edge stable channel version “138.0.3351.65” to address multiple vulnerabilities. The addressed vulnerabilities could allow the attacker to bypass security restrictions, obtain sensitive information, or execute arbitrary code and gain access to the affected system by persuading the victim to visit a specially crafted website. Sample of the addressed vulnerabilities:

Microsoft Edge Security Update – 02 July 2025 Read More »

Google Chrome Security Update – 01 July 2025

Google has released an updated Chrome version 138.0.7204.96/.97 for Windows, 138.0.7204.92/.93 for Mac, and 138.0.7204.96 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by sending a crafted HTML. Google Chrome Code Execution Vulnerability (CVE-2025-6554): CVSS: 8.8 Attack Vector: Network Attack Complexity: Low

Google Chrome Security Update – 01 July 2025 Read More »

Google Chrome Security Update – 01 July 2025

Google has released an updated Chrome version 138.0.7204.96/.97 for Windows, 138.0.7204.92/.93 for Mac, and 138.0.7204.96 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system by sending a crafted HTML. Google Chrome Code Execution Vulnerability (CVE-2025-6554): CVSS: 8.8 Attack Vector: Network Attack Complexity: Low

Google Chrome Security Update – 01 July 2025 Read More »

Google Chrome Security Update – 25 June 2025

Google has released an updated Chrome version 138.0.7204.49 for Linux, and versions 138.0.7204.49/50 for Windows and Mac. The addressed vulnerabilities could allow the remote attacker to bypass security restrictions, execute arbitrary code, and cause memory corruption on the affected devices. Sample of the addressed vulnerabilities: Google Chrome Use After Free in Animation Vulnerability (CVE-2025-6555): CVSS:

Google Chrome Security Update – 25 June 2025 Read More »

Citrix Security Updates – 19 June 2025

Citrix has released security updates to address multiple vulnerabilities affecting Citrix Secure Access Client for Windows, Citrix Workspace app for Windows, NetScaler ADC, and NetScaler Gateway. The addressed vulnerabilities could allow the attacker to bypass access controls, obtain sensitive information, or gain elevated privileges on the affected product. Sample of the addressed vulnerabilities: 1. NetScaler

Citrix Security Updates – 19 June 2025 Read More »

Google Chrome Security Update – 18 June 2025

Google has released an updated Chrome version 137.0.7151.119/.120 for Windows, Mac and 137.0.7151.119 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code by persuading the victim to visit a specially crafted website and gain access to the affected system. Sample of the addressed vulnerabilities: Google Chrome Code Execution Vulnerability (CVE-2025-6192):

Google Chrome Security Update – 18 June 2025 Read More »

Veeam Security Update – 18 June 2025

Veeam has released a security update to fix multiple vulnerabilities across Veeam Backup & Replication systems and Veeam Agent for Microsoft Windows. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: Veeam Backup Arbitrary Code Execution Vulnerability (CVE-2025-23121): CVSS: 9.9

Veeam Security Update – 18 June 2025 Read More »

Google Chrome Security Update – 11 June 2025

Google has released an updated Chrome version 137.0.7151.103/.104 for Windows, Mac and 137.0.7151.103 for Linux. The addressed vulnerabilities could allow the remote attacker to execute arbitrary code by persuading the victim to visit a specially crafted website and gain access to the affected system. Sample of the addressed vulnerabilities: Google Chrome Code Execution Vulnerability (CVE-2025-5958):

Google Chrome Security Update – 11 June 2025 Read More »

SolarWinds Security Updates – 11 June 2025

SolarWinds has released security updates to address several vulnerabilities affecting multiple SolarWinds products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, conduct cross-site scripting attacks, or gain elevated privileges to the affected product. 1. SolarWinds DameWare Mini Remote Control Service Incorrect Permissions Privilege Escalation Vulnerability (CVE-2025-26396): CVSS: 7.8 Attack Vector: Local Attack

SolarWinds Security Updates – 11 June 2025 Read More »

Aruba Security Updates – 11 June 2025

Aruba has released security updates to fix several vulnerabilities across multiple HPE Aruba products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, perform path traversal, perform denial of service attacks, or execute arbitrary code and gain access to the affected system. Sample of the addressed vulnerabilities: 1. HPE Aruba Networking Private 5G

Aruba Security Updates – 11 June 2025 Read More »