vulnerability Vulnérabilité dans OpenSSL (14 août 2026) A vulnerability has been identified in OpenSSL, potentially leading to a denial-of-service attack. Affected versions of the software require immediate patching to prevent exploitation. The vulnerability is currently unpa… CERT-FR · Aug 14, 2026 Medium CVE-2026-14456opensslvulnerabilitydenial-of-service
vulnerability Multiples vulnérabilités dans les produits Mattermost (14 août 2026) Multiple vulnerabilities have been discovered in Mattermost Server versions 10.11.x through 11.9.x. The CERT-FR bulletin details several security updates addressing these issues, urging users to apply the provided patche… CERT-FR · Aug 14, 2026 Medium mattermostvulnerabilitysecurity update
vulnerability Multiples vulnérabilités dans Stormshield Network Security (14 août 2026) Multiple vulnerabilities have been discovered in Stormshield Network Security, potentially allowing for remote code execution, denial of service, and data compromise. These vulnerabilities affect various versions of the… CERT-FR · Aug 14, 2026 Medium CVE-2026-25075CVE-2026-34180CVE-2026-35058vulnerabilityremote code executiondenial of service
vulnerability Multiples vulnérabilités dans les produits IBM (14 août 2026) Multiple vulnerabilities have been discovered in IBM products, including remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect a wide range of IBM products, including Db… CERT-FR · Aug 14, 2026 High CVE-2021-23337CVE-2023-44487CVE-2024-3651vulnerabilitysecuritypatch
vulnerability Multiples vulnérabilités dans Tenable Security Center (14 août 2026) Multiple vulnerabilities have been discovered in Tenable Security Center, including remote code execution, privilege escalation, and SQL injection. These vulnerabilities affect versions of Security Center prior to 6.9.0.… CERT-FR · Aug 14, 2026 High CVE-2026-11564CVE-2026-11586CVE-2026-11856vulnerabilityremote code executionsql injection
threat-intel Multiples vulnérabilités dans le noyau Linux d'Ubuntu (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Some of these vulnerabilities allow for remote denial of service, privilege escalation, and an unspecified security issue. These vulnerabilitie… CERT-FR · Aug 14, 2026 High CVE-2021-47117CVE-2021-47202CVE-2021-47354linuxvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans PostgreSQL (14 août 2026) Multiple vulnerabilities have been discovered in PostgreSQL, impacting versions 15.x through 18.x and prior to 14.24. These vulnerabilities include potential for data confidentiality breaches, policy bypasses, denial of… CERT-FR · Aug 14, 2026 High CVE-2026-14662CVE-2026-14663CVE-2026-14664postgresqlvulnerabilitysecurity
threat-intel Multiples vulnérabilités dans le noyau Linux de Debian LTS (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian LTS. Several of these vulnerabilities allow for privilege escalation, data compromise, and denial of service. The vulnerabilities affect Debian… CERT-FR · Aug 14, 2026 High CVE-2024-36013CVE-2025-21807CVE-2025-40196linuxvulnerabilitydebian
vulnerability Vulnérabilité dans les produits Sophos (14 août 2026) A critical vulnerability has been identified in Sophos products, allowing attackers to escalate privileges on macOS systems. This affects older versions of Intercept X Endpoint and Sophos Home, requiring immediate patchi… CERT-FR · Aug 14, 2026 Critical CVE-2026-18367macosvulnerabilityprivilege escalation
threat-intel Cl0p industrialise ses attaques via PTC Windchill A critical vulnerability in PTC Windchill and FlexPLM has been exploited by the Cl0p group, leading to a widespread campaign targeting nearly 50 international companies, including Philips, Shell, Fiserv, and GE. The vuln… ZATAZ · Aug 13, 2026 High CVE-2026-12569vulnerabilitysupply-chainremote-code-execution
threat-intel Global Threat Campaign Hits Critical VMware vCenter Flaw A single threat actor has been aggressively exploiting a critical vulnerability (CVE-2026-59310) in VMware vCenter, initiating a global threat campaign that began shortly after public disclosure. The vulnerability, a dir… Dark Reading · Aug 13, 2026 High USFRIRvulnerabilityexploitreverse_ssh
vulnerability GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE A newly discovered zero-day SQL injection vulnerability in GeoServer is currently being actively exploited. The vulnerability, which has been assigned a GitHub security advisory identifier (GHSA-mqjf-5f49-2fjh), allows f… The Hacker News · Aug 13, 2026 Critical CVE-2024-36401CVE-2023-25158CVE-2023-25157sql injectionzero-dayremote code execution
vulnerability Magento visé quelques heures après la divulgation d’un correctif A critical vulnerability (CVE-2026-71362) in Adobe Commerce, Commerce B2B, and Magento Open Source has been actively exploited shortly after its patch release. While no confirmed customer breaches have been publicly repo… ZATAZ · Aug 13, 2026 Critical CVE-2026-71362session hijackingpatchecommerce
vulnerability VMware vCenter : des serveurs français compromis A critical vulnerability, CVE-2026-59310, affecting VMware vCenter has been actively exploited since August 3rd, with over 360 compromised IP addresses across 47 countries, including a significant number in France. The v… ZATAZ · Aug 13, 2026 High CVE-2026-59310CVE-2026-47876CVE-2026-59309DEUSTRvulnerabilityexploitreverse shell
threat-intel New Mirai variant adds stealth capabilities to notorious botnet code A new, stealthier variant of the Mirai botnet, dubbed Evooo1Bot, has been actively exploiting vulnerabilities in internet-facing hardware for over a month. This malware boasts advanced features like encrypted communicati… The Record · Aug 13, 2026 High CACHGEmiraibotnetvulnerability
threat-intel Trump wants to grant private cyber firms a license to hack back This article is a collection of security and technology news snippets. It highlights a range of developments, including a potential US government initiative to allow private cybersecurity firms to conduct offensive opera… The Register · Aug 13, 2026 Medium IRcybersecurityphishingransomware
threat-intel Black Hat USA 2026: Will vulnerability discovery eventually decline in the AI era? The rapid increase in vulnerability discovery, driven by advancements in AI models like Anthropic's Claude Mythos, is overwhelming cybersecurity teams and raising concerns about responsible disclosure. The sheer volume o… WeLiveSecurity · Aug 13, 2026 High aivulnerabilitydiscovery
vulnerability Adobe Commerce Bug Targeted Immediately After Disclosure A critical vulnerability in Adobe Commerce and Magento allowed unauthenticated attackers to gain access to other customer accounts immediately after its disclosure. Adobe swiftly released a patch, but threat actors were… SecurityWeek · Aug 13, 2026 Critical CVE-2026-71362vulnerabilityecommerceadobe
vulnerability WordPress 7.0.4 Patches Remote Code Execution Vulnerability WordPress has released version 7.0.4 to address a high-severity remote code execution vulnerability. This flaw, tracked as CVE-2026-65640, allows authenticated attackers to execute code by uploading malicious PostScript… SecurityWeek · Aug 13, 2026 High CVE-2026-65640wordpressvulnerabilityremote code execution
vulnerability Flow Neuroscience FL-100 A critical vulnerability has been identified in Flow Neuroscience devices (FL-100 and Halo Neuroscience FL-100) due to a hard-coded credential that allows an attacker within Bluetooth range to manipulate brain stimulatio… CISA Advisories · Aug 13, 2026 Critical CVE-2026-18164bluetoothvulnerabilityhardcoded