vulnerability Siemens SIMATIC S7-PLCSIM Advanced A vulnerability in Siemens SIMATIC S7-PLCSIM Advanced could allow an unauthenticated attacker to cause a denial-of-service condition by overwhelming the application with high-volume multicast network traffic. Siemens is… CISA Advisories · Jul 28, 2026 High CVE-2026-54429DEindustrial control systemscve-2026-54429denial of service
vulnerability igloohome Smart Lock Mobile Application A vulnerability in the igloohome Smart Lock Mobile Application (Android 3.2.3) allows an unauthorized actor to access backend services. This could enable access to sensitive functionality and potentially compromise the s… CISA Advisories · Jul 28, 2026 Medium CVE-2026-16581vulnerabilitycwe-540smart lock
vulnerability Siemens Desigo CC A stack-based buffer overflow vulnerability in Siemens Desigo CC versions V7, V8, and V9 (prior to V9.0.1) has been identified, potentially allowing remote code execution. Siemens has released patches and recommends upda… CISA Advisories · Jul 28, 2026 High CVE-2025-15467DEstack-buffer-overflowcwe-787open ssl
vulnerability Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock Arista Networks has patched a vulnerability in its VeloCloud software that was being actively exploited. The CISA (Cybersecurity and Infrastructure Security Agency) issued an advisory urging administrators to address the… The Register · Jul 28, 2026 High CVE-2026-16812patchvulnerabilitynetwork
vulnerability Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In JetBrains has identified and patched a critical vulnerability in TeamCity On-Premises, allowing unauthenticated attackers to execute OS commands. This flaw, assigned CVE-2026-63077, could lead to data exposure and server… The Hacker News · Jul 28, 2026 Critical CVE-2026-63077vulnerabilityremote code executionauthentication bypass
vulnerability Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit A researcher, aided by AI, discovered and developed a Linux kernel exploit (CVE-2026-53264) that allows a local user to gain root access on CentOS Stream 9. The exploit leverages a use-after-free race in the network traf… The Hacker News · Jul 28, 2026 High CVE-2026-53264linuxrootexploit
vulnerability Unpatched Fastjson Vulnerability Exploited in Attacks A critical remote code execution (RCE) vulnerability in Fastjson, a popular Java JSON processing library, has been actively exploited by threat actors. The vulnerability, tracked as CVE-2026-16723, allows attackers to ex… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16723USSGCArcejsonspring boot
vulnerability Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day Arista Networks has released patches for a critical zero-day vulnerability in its VeloCloud Orchestrator, which has been actively exploited in the wild. The flaw allows remote access to privileged functionality, and no s… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16812CVE-2025-68686CVE-2022-42475zero-daypatchvulnerability
vulnerability Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw A maximum-severity command injection vulnerability (CVE-2026-16812) in Arista VeloCloud Orchestrator (VCO) has been actively exploited in the wild, allowing remote code execution and potential access to VeloCloud Edge de… The Hacker News · Jul 28, 2026 Critical CVE-2026-16812CVE-2025-68686CVE-2026-16723command injectionvcocisa
vulnerability ISC Stormcast For Tuesday, July 28th, 2026 https://isc.sans.edu/podcastdetail/10026, (Tue, Jul 28th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache ActiveMQ, potentially allowing attackers to execute arbitrary code. This could lead to widespread disruption and data compromise a… SANS Internet Storm Center · Jul 28, 2026 Critical rceapacheactivemq
vulnerability Multiples vulnérabilités dans les produits Apple (28 juillet 2026) Multiple vulnerabilities have been discovered in Apple products, including iOS, iPadOS, macOS, tvOS, watchOS, and visionOS. Several of these vulnerabilities allow for arbitrary code execution, privilege escalation, and d… CERT-FR · Jul 28, 2026 High CVE-2025-43325CVE-2026-20672CVE-2026-23918securityvulnerabilitypatch
vulnerability Multiples vulnérabilités dans Samba (28 juillet 2026) Multiple vulnerabilities have been discovered in Samba, potentially leading to denial of service, data confidentiality breaches, and policy bypasses. These vulnerabilities affect older versions of the Samba server softwa… CERT-FR · Jul 28, 2026 Medium CVE-2026-58216CVE-2026-58218CVE-2026-58221vulnerabilitysecurityserver
vulnerability 'Confused Deputy' Flaws Persist in Google Cloud, Microsoft Azure Two significant ‘confused deputy’ vulnerabilities persist in Google Cloud Platform (GCP) and Microsoft Azure, allowing attackers to escalate privileges and bypass security controls. Despite reporting these flaws to both… Dark Reading · Jul 27, 2026 High cloud securityidentity managementaccess control
vulnerability Microsoft's solution to AI security: more AI and more acronyms Microsoft is facing a zero-day vulnerability in its on-prem SharePoint system, allowing attackers to exploit the flaw. This follows a broader trend of security challenges related to Microsoft products and a wider increas… The Register · Jul 27, 2026 High USIRSWvulnerabilitysharepointzero-day
vulnerability Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw A public exploit for a remote code execution vulnerability in vBulletin has been released, targeting versions 6.2.1 and earlier, and 6.1.6 and earlier. The vulnerability allows unauthenticated code execution, but the exp… The Hacker News · Jul 27, 2026 High CVE-2026-61511CVE-2025-48827CVE-2025-48828rcevbulletinremote-code-execution
vulnerability Microsoft Defender for Endpoint leaves some Linux boxes defenseless after update A recent update to Microsoft Defender for Endpoint introduced a vulnerability that left some Linux systems exposed to attack. The flaw stems from a misconfigured feature within the endpoint protection software, allowing… The Register · Jul 27, 2026 Medium linuxendpoint securityvulnerability
vulnerability PTC Windchill Vulnerability Exploited in Ransomware Campaign A critical remote code execution vulnerability in PTC's Windchill and FlexPLM PLM platforms has been exploited by a Cl0p ransomware affiliate in a targeted campaign. The attackers are leveraging a chain of vulnerabilitie… SecurityWeek · Jul 27, 2026 Critical CVE-2026-12569rcevulnerabilityransomware
vulnerability n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process N8n, a workflow automation platform, had a high-severity expression-sandbox escape that could allow authenticated workflow editors to execute operating system commands on the server. The vulnerability stemmed from a flaw… The Hacker News · Jul 27, 2026 High CVE-2026-27577expression-sandboxworkflowjavascript
vulnerability Java Spring Boot "heapdump" scans, (Mon, Jul 27th) A vulnerability in Spring Boot applications exposes a heapdump endpoint that, by default, contains sensitive data like API keys and database passwords. Attackers are leveraging a weak default username/password combinatio… SANS Internet Storm Center · Jul 27, 2026 High springheapdumpsecurity
vulnerability ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Log4j 2, potentially allowing attackers to execute arbitrary code through a malicious log message. This vulnerability, alongside r… SANS Internet Storm Center · Jul 27, 2026 Critical log4jjndiremote code execution