News Windows CVE-2026-73570: Unauthenticated command injection puts internet-facing Zimbra servers at risk October 3, 2026 by Alex Mira | Leave a Comment Microsoft is tracking exploitation of CVE-2026-73570, an unauthenticated command-injection flaw in Zimbra’s SNMP notification path. Here is what affected administrators should check. Read more » CVE-2026-73570 Email security Microsoft Threat Intelligence Server security Vulnerability Management Zimbra
News Security Cisco warns of actively exploited Catalyst SD-WAN Manager authentication bypass October 3, 2026 by Alex Mira | Leave a Comment Cisco says CVE-2026-76504 is an actively exploited authentication bypass in Catalyst SD-WAN Manager. Administrators should apply the relevant fixed release and review specified logs for suspicious activity. Read more » Cisco cve Network Security SD-WAN Vulnerability Management
News Security TeamViewer patches five vulnerabilities in client and host software October 1, 2026 by Alex Mira | Leave a Comment TeamViewer has released version 15.82 to fix five vulnerabilities affecting its Full Client and Host software on Windows, Linux, and macOS, including a flaw that can bypass configured remote-session permissions. Read more » cve Linux Security Remote Access Security TeamViewer Vulnerability Management Windows security
AI News Security OpenAI testing uncovers zero-day flaws in JFrog Artifactory: what’s confirmed about the eight CVEs July 29, 2026 / July 29, 2026 by Alex Mira | Leave a Comment OpenAI’s model evaluations led to eight CVEs in JFrog Artifactory being disclosed and fixed. Here’s what’s confirmed, what’s unclear, and what admins can do now. Read more » CVE-2026-65617 JFrog Artifactory openai Privilege escalation Software supply chain SSRF Vulnerability Management
News Security CVE-2026-25089 in Fortinet FortiSandbox: active exploitation confirmed, patch now and lock down access July 20, 2026 / July 20, 2026 by Alex Mira | Leave a Comment CISA confirmed active exploitation of CVE-2026-25089 in Fortinet FortiSandbox. Here’s what’s affected, the fixed versions, and practical steps to patch and lock down access—plus what remains uncertain. Read more » CISA KEV Command Injection CVE-2026-25089 Fortinet FortiSandbox patch tuesday Vulnerability Management
News Microsoft Defender CVEs: CVE-2026-41091 (local privilege escalation) and CVE-2026-45498 (denial of service) May 21, 2026 / May 21, 2026 by Alex Mira | Leave a Comment Two Microsoft Defender flaws—CVE-2026-41091 (local privilege escalation via link following) and CVE-2026-45498 (denial of service)—are now listed in NVD and MSRC. Here’s what’s confirmed, what remains unclear, and where to find official guidance. Read more » CVE-2026-41091 CVE-2026-45498 Endpoint security Microsoft Defender Vulnerability Management Windows security