vulnerability SAP fixes critical flaws in NetWeaver and Commerce Cloud SAP has released a security patch addressing 15 vulnerabilities across its NetWeaver and Commerce Cloud platforms. The patch includes four critical flaws, primarily focused on authentication bypass and memory corruption,… BleepingComputer · Jun 9, 2026 Critical CVE-2026-44748CVE-2026-27671CVE-2026-22732samsauthenticationmemory corruption
vulnerability Microsoft Patches 200 Vulnerabilities Three of the vulnerabilities fixed with the latest Patch Tuesday updates were publicly disclosed before Microsoft addressed them. The post Microsoft Patches 200 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026 CVE-2026-49160CVE-2026-50507CVE-2026-45586
vulnerability Adobe Patches 123 Vulnerabilities Nearly half of the security holes, most allowing arbitrary code execution, have been fixed in Adobe’s Experience Manager product. The post Adobe Patches 123 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026
vulnerability Microsoft June 2026 Patch Tuesday fixes 6 zero-days, 200 flaws Microsoft released its June 2026 Patch Tuesday updates, addressing a significant number of vulnerabilities across its product suite. The updates include five publicly disclosed zero-day vulnerabilities, one of which is c… BleepingComputer · Jun 9, 2026 High zero-daypatchvulnerability
vulnerability Microsoft June 2026 Patch Tuesday fixes 3 zero-day, 200 flaws Microsoft released its June 2026 Patch Tuesday updates, addressing a significant number of vulnerabilities across its product suite. The updates included three previously unknown zero-day exploits and a total of 200 othe… BleepingComputer · Jun 9, 2026 High zero-daypatchmicrosoft
vulnerability Microsoft June 2026 Patch Tuesday, (Tue, Jun 9th) Microsoft today released patches for 204 vulnerabilities. 38 of these vulnerabilities are considered critical, and three have been disclosed before today. Six of the vulnerabilities affect Microsoft cloud solutions and d… SANS Internet Storm Center · Jun 9, 2026 High CVE-2026-49160CVE-2026-47291CVE-2026-45648
vulnerability OpenSSL Patches High-Severity Vulnerability Found With AI A total of 18 vulnerabilities have been patched in the latest OpenSSL releases, including many that were potentially discovered by AI. The post OpenSSL Patches High-Severity Vulnerability Found With AI appeared first on… SecurityWeek · Jun 9, 2026 High CVE-2026-45447
vulnerability Veeam Backup & Replication RCE Flaw Lets Domain Users Run Remote Code Veeam has released security patches to address a critical flaw in its Backup & Replication software that could result in remote code execution. Tracked as CVE-2026-44963, the vulnerability carries a CVSS score of 9.4 out… The Hacker News · Jun 9, 2026 Critical CVE-2026-44963
vulnerability New Veeam vulnerability exposes backup servers to RCE attacks Veeam has released security updates to patch a critical Backup & Replication security flaw that can be exploited to gain remote code execution (RCE) on domain-joined backup servers. BleepingComputer · Jun 9, 2026 High CVE-2026-44963CVE-2024-40711
vulnerability SAP Patches Critical NetWeaver, Commerce Vulnerabilities The flaws could lead to the disclosure of sensitive information, memory corruption, and disruption of normal system usage. The post SAP Patches Critical NetWeaver, Commerce Vulnerabilities appeared first on SecurityWeek… SecurityWeek · Jun 9, 2026 High CVE-2026-44748CVE-2026-27671CVE-2026-22732
vulnerability Schneider Electric Modicon Network Managed Switches Schneider Electric has identified a vulnerability (CVE-2024-3596) in its Modicon Network Managed Switches due to a misconfigured RADIUS protocol. Specifically, disabling the RADIUS Server Message Authenticator option mak… CISA Advisories · Jun 9, 2026 High CVE-2024-3596WOradiuscvesecurity
vulnerability Siemens KACO Blueplanet Inverters This advisory from CISA details vulnerabilities within Siemens KACO Blueplanet Inverters, a series of industrial inverters used in energy systems. The vulnerabilities, specifically a CRC16-based algorithm for generating… CISA Advisories · Jun 9, 2026 High CVE-2025-40946CVE-2026-41125WOindustrial control systemsvulnerabilityauthentication
vulnerability Schneider Electric EcoStruxure Panel Server Schneider Electric has identified a vulnerability in its EcoStruxure Panel Server product line, specifically versions prior to 002.006.000. This vulnerability, classified as CWE-1188, allows for potential unauthorized au… CISA Advisories · Jun 9, 2026 High CVE-2026-6866FRcwe-1188firmwareauthentication
vulnerability Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now Google has released security updates to address 74 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2026-11645 (CVSS score: 8.8), has bee… The Hacker News · Jun 9, 2026 Critical CVE-2026-11645CVE-2026-2441CVE-2026-3909
vulnerability CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day The Cybersecurity and Infrastructure Security Agency (CISA) has issued a Binding Operational Directive (BOD) 22-01, requiring U.S. federal agencies to patch a critical zero-day vulnerability in Check Point’s Remote Acces… BleepingComputer · Jun 9, 2026 High CVE-2026-50751CVE-2024-24919zero-dayvpnikev1
vulnerability Google patches new Chrome zero-day flaw exploited in the wild Google has released a security update to address a newly discovered and actively exploited zero-day vulnerability (CVE-2026-11645) within the Chrome browser. This flaw, originating in the V8 JavaScript engine, allows att… BleepingComputer · Jun 9, 2026 High CVE-2026-11645CVE-2024-0519CVE-2026-2441zero-daychromev8
vulnerability Google Patches 5th Chrome Zero-Day Exploited in 2026 The vulnerability is tracked as CVE-2026-11645 and it was reported in late April by an anonymous researcher. The post Google Patches 5th Chrome Zero-Day Exploited in 2026 appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026 Critical CVE-2026-11645CVE-2026-2441CVE-2026-3909
vulnerability Check Point VPN Flaw Exploited Since Early May A critical zero-day vulnerability (CVE-2026-50751) in Check Point's Security Gateways and Spark Firewalls has been exploited since early May by a Qilin ransomware affiliate. The flaw, involving a logic flaw in certificat… Dark Reading · Jun 8, 2026 Critical CVE-2026-50751CVE-2026-50752zero-dayikev1vpn
vulnerability One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public A critical vulnerability, CVE-2026-23111, has been discovered in the Linux kernel’s nf_tables packet-filtering code, allowing unprivileged users to escalate to root access and break out of containers. The flaw, initially… The Hacker News · Jun 8, 2026 Critical CVE-2026-23111linuxkerneluse-after-free
vulnerability Critical Zcash Vulnerability Found and Fixed If you’re a user—owner?—of this cryptocurrency, this is important: On May 29, the security researcher Taylor Hornby found a critical vulnerability in Zcash Orchard privacy pool using Claude Opus 4.8. The Zcash team hired… Schneier on Security · Jun 8, 2026 Critical