AI News Security OpenAI testing uncovers zero-day flaws in JFrog Artifactory: what’s confirmed about the eight CVEs July 29, 2026 / July 29, 2026 by Alex Mira | Leave a Comment OpenAI’s model evaluations led to eight CVEs in JFrog Artifactory being disclosed and fixed. Here’s what’s confirmed, what’s unclear, and what admins can do now. Read more » CVE-2026-65617 JFrog Artifactory openai Privilege escalation Software supply chain SSRF Vulnerability Management
News Security CVE-2026-25089 in Fortinet FortiSandbox: active exploitation confirmed, patch now and lock down access July 20, 2026 / July 20, 2026 by Alex Mira | Leave a Comment CISA confirmed active exploitation of CVE-2026-25089 in Fortinet FortiSandbox. Here’s what’s affected, the fixed versions, and practical steps to patch and lock down access—plus what remains uncertain. Read more » CISA KEV Command Injection CVE-2026-25089 Fortinet FortiSandbox patch tuesday Vulnerability Management
News Microsoft Defender CVEs: CVE-2026-41091 (local privilege escalation) and CVE-2026-45498 (denial of service) May 21, 2026 / May 21, 2026 by Alex Mira | Leave a Comment Two Microsoft Defender flaws—CVE-2026-41091 (local privilege escalation via link following) and CVE-2026-45498 (denial of service)—are now listed in NVD and MSRC. Here’s what’s confirmed, what remains unclear, and where to find official guidance. Read more » CVE-2026-41091 CVE-2026-45498 Endpoint security Microsoft Defender Vulnerability Management Windows security