vulnerability Multiples vulnérabilités dans les produits Veeam (05 août 2026) Multiple vulnerabilities have been discovered in Veeam products, including vulnerabilities that could allow for remote code execution, privilege escalation, and denial of service attacks. These issues affect Service Prov… CERT-FR · Aug 5, 2026 High CVE-2026-58067CVE-2026-58071CVE-2026-58072vulnerabilitypatchremote code execution
vulnerability Feds get 3 days to patch N-able God mode flaw under active exploit A critical vulnerability, actively being exploited, has been discovered in N-able God Mode, a system management tool. Federal agencies have been given a short window to patch the flaw, highlighting a significant risk of… The Register · Aug 4, 2026 Critical CVE-2026-18577CVE-2026-18556zero-daypatchingsystem management
vulnerability Swiss IT agency hacked, 200 accounts compromised, SharePoint vulns suspected The Swiss Federal Office for Information Technology and Communications (BIT) was hacked, with approximately 200 accounts compromised due to vulnerabilities in on-premises Microsoft SharePoint servers. Hackers exploited k… The Record · Aug 4, 2026 High SWsharepointvulnerabilityiis
vulnerability Thermo Fisher Applied Biosystems Genetic Analyzers Thermo Fisher Scientific has issued a security advisory regarding vulnerabilities in its Applied Biosystems Genetic Analyzers, specifically the data collection software and instrument software. These vulnerabilities coul… CISA Advisories · Aug 4, 2026 High CVE-2026-17583vulnerabilitydnadata manipulation
vulnerability Acrisure KARR BT and DR-100 A critical vulnerability has been identified in Acrisure KARR BT and DR-100 automotive anti-theft systems, allowing an attacker within Bluetooth range to potentially control vehicle functions, including door unlocking an… CISA Advisories · Aug 4, 2026 Critical CVE-2026-18411USbluetoothfirmwarecwe-321
vulnerability TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover Researchers at Forescout discovered 15 vulnerabilities in TP-Link’s Omada networking ecosystem’s zero-touch provisioning (ZTP) system, allowing attackers to potentially take over entire networks by chaining together thes… SecurityWeek · Aug 4, 2026 High CVE-2025-7850CVE-2025-7851ztpnetworkvulnerability
vulnerability Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering A vulnerability in Google’s Agent Development Kit (ADK) for Python allowed an attacker to manipulate low-privileged agents to gain access to high-privilege capabilities, potentially leading to pull request poisoning and… SecurityWeek · Aug 4, 2026 High agent-to-agentpull request poisoningremote code execution
vulnerability New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root A critical vulnerability (CVE-2026-58048) in cPanel allows authenticated hosting customers to execute arbitrary database commands with administrative privileges, potentially leading to system-wide compromise. This flaw s… The Hacker News · Aug 4, 2026 Critical CVE-2026-58048CVE-2026-58047cvesql injectionprivilege escalation
vulnerability Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks A 22-year-old vulnerability in BMC management processors is exposing thousands of data centers to attack. The flaw allows attackers to retrieve password hashes and crack them offline, potentially gaining unauthorized acc… SecurityWeek · Aug 4, 2026 High CVE-2013-4786bmcipmipassword cracking
vulnerability ISC Stormcast For Tuesday, August 4th, 2026 https://isc.sans.edu/podcastdetail/10036, (Tue, Aug 4th) The ISC Stormcast highlighted a significant vulnerability in Apache ActiveMQ, potentially allowing attackers to execute arbitrary code. This could lead to widespread disruption and data compromise across various industri… SANS Internet Storm Center · Aug 4, 2026 Critical activemqrcevulnerability
vulnerability Multiples vulnérabilités dans les produits Tenable (04 août 2026) Multiple vulnerabilities have been discovered in Tenable products, including vulnerabilities that could lead to arbitrary code execution, data integrity compromise, and SQL injection attacks. These vulnerabilities span a… CERT-FR · Aug 4, 2026 High CVE-2025-11187CVE-2025-14179CVE-2025-15467vulnerabilitypatchsecurity
vulnerability Vulnérabilité dans les produits Check Point (04 août 2026) A vulnerability has been identified in Check Point’s security products, allowing attackers to execute arbitrary code remotely and bypass security policies. This affects older versions of their Multi-Domain Security Manag… CERT-FR · Aug 4, 2026 High CVE-2026-18574vulnerabilityremote code executionsecurity policy
vulnerability Multiples vulnérabilités dans Microsoft Edge (04 août 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, potentially allowing an attacker to trigger an unspecified security issue. These vulnerabilities are part of a series of CVEs released on July 31, 2026. Us… CERT-FR · Aug 4, 2026 CVE-2026-17871CVE-2026-17872CVE-2026-17873
vulnerability Multiples vulnérabilités dans LibreNMS (04 août 2026) Multiple vulnerabilities have been discovered in LibreNMS, allowing attackers to execute arbitrary code remotely, perform server-side request forgery (SSRF), and inject code remotely via XSS. These vulnerabilities affect… CERT-FR · Aug 4, 2026 High CVE-2026-45694librenmsvulnerabilitycve
vulnerability Multiples vulnérabilités dans Traefik (04 août 2026) Multiple vulnerabilities have been discovered in Traefik, allowing an attacker to bypass security policies. Users of Traefik versions 3.7.x prior to 3.7.10, 3.6.25, and 2.11.54 are at risk. The CERT-FR is advising users… CERT-FR · Aug 4, 2026 Medium traefikvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Google Android (04 août 2026) Google Android is experiencing multiple vulnerabilities, as reported by CERT-FR. The exact nature of these vulnerabilities is not specified, but users are urged to apply the security patch released on August 3, 2026, to… CERT-FR · Aug 4, 2026 Medium androidvulnerabilitysecurity
vulnerability Attackers Exploit N-able Patch Bypass Flaw on RMM Servers N-able disclosed a patch bypass vulnerability (CVE-2026-18577) that allowed attackers to gain administrative access to N-central servers, its remote monitoring and management (RMM) platform. Threat actors exploited this… Dark Reading · Aug 3, 2026 High CVE-2026-18577CVE-2026-18556patch-bypassremote-managementrmm
vulnerability INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws The INC Ransomware operation has become the dominant threat actor exploiting a series of zero-day vulnerabilities in SonicWall SMA 1000 VPN appliances. Since the beginning of August 2026, the group has been aggressively… The Hacker News · Aug 3, 2026 High CVE-2026-15409CVE-2026-15410AUU.UAzero-dayvpnransomware
vulnerability N‑able Patches Vulnerability Exploited to Hack N-central Servers A vulnerability in N-able's N-central remote monitoring and management product has been actively exploited in the wild, allowing attackers to gain administrative access to customer servers. The issue stems from a bypass… SecurityWeek · Aug 3, 2026 High CVE-2026-18577CVE-2026-18556CVE-2025-8875patchremote managementmsp
vulnerability Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks The INC Ransomware group has been aggressively exploiting two vulnerabilities in SonicWall’s SMA1000 secure remote access appliances to deploy ransomware, targeting organizations across multiple countries. These vulnerab… SecurityWeek · Aug 3, 2026 High CVE-2026-15409CVE-2026-15410USAUUAvulnerabilityransomwarezero-day