vulnerability Vulnérabilité dans WordPress (13 août 2026) A remote code execution vulnerability has been identified in older versions of WordPress, allowing attackers to execute arbitrary code. This affects WordPress versions prior to 7.0.4, and requires immediate patching to p… CERT-FR · Aug 13, 2026 Critical CVE-2026-65640wordpressrcevulnerability
vulnerability Multiples vulnérabilités dans GitLab (13 août 2026) Multiple vulnerabilities have been discovered in GitLab, including remote code injection, denial of service, and privilege escalation. These issues affect versions 19.1.x through 19.1.4, 19.2.x through 19.2.2, and all ve… CERT-FR · Aug 13, 2026 High CVE-2025-9486CVE-2026-15216CVE-2026-15217gitlabvulnerabilityremote code injection
vulnerability Multiples vulnérabilités dans Wireshark (13 août 2026) Multiple vulnerabilities have been discovered in Wireshark, allowing an attacker to cause a denial-of-service. These vulnerabilities affect Wireshark versions 4.4.x prior to 4.4.18 and 4.6.x prior to 4.6.8. Users are adv… CERT-FR · Aug 13, 2026 Medium vulnerabilitydenial-of-servicenetwork analysis
vulnerability Vulnérabilité dans les produits Foxit (13 août 2026) A vulnerability has been identified in Foxit PDF Editor and Reader software, allowing an attacker to compromise data integrity. Users of older versions of these products are at risk of exploitation. The vendor has releas… CERT-FR · Aug 13, 2026 Medium CVE-2026-18622pdfvulnerabilitydata integrity
threat-intel Multiples vulnérabilités dans les produits Palo Alto Networks (13 août 2026) Multiple vulnerabilities have been discovered in Palo Alto Networks products, including remote code execution, privilege escalation, and denial-of-service attacks. Several CVEs have been identified, impacting various pro… CERT-FR · Aug 13, 2026 High CVE-2026-0291CVE-2026-0292CVE-2026-0293vulnerabilitythreatsecurity
vulnerability Multiples vulnérabilités dans les produits Adobe (13 août 2026) Multiple vulnerabilities have been discovered in Adobe products, including Adobe Commerce and ColdFusion. These vulnerabilities allow for remote code execution, privilege escalation, denial of service, and circumvention… CERT-FR · Aug 13, 2026 High CVE-2026-21273CVE-2026-21279CVE-2026-25652vulnerabilitypatchadobe
vulnerability Multiples vulnérabilités dans Progress MOVEit WAF (13 août 2026) Multiple vulnerabilities have been discovered in Progress MOVEit WAF, allowing attackers to execute arbitrary code remotely, escalate privileges, and bypass security policies. These vulnerabilities affect versions prior… CERT-FR · Aug 13, 2026 Critical CVE-2026-59686CVE-2026-59687CVE-2026-59688vulnerabilityprogressmoveit
threat-intel Taïwan visé par une cyberattaque pilotée par IA ? A Taiwanese cybersecurity incident, potentially linked to a Chinese operator, has involved a sophisticated campaign utilizing multiple AI agents to target government systems and critical infrastructure. Researchers at Dr… ZATAZ · Aug 12, 2026 High CHaicyberattackintelligence
threat-intel 'Near-autonomous' AI agents attack Taiwan's nuclear safety agency Taiwan's Nuclear Safety Agency is facing an attack from 'near-autonomous' AI agents, potentially leveraging a programming language developed by a company recently acquired by Qualcomm. This incident highlights the growin… The Register · Aug 12, 2026 High TAIRaicyberattacktaiwan
vulnerability Spectre rears its ugly head again as researchers show some RISC-V chips are susceptible Researchers have discovered that some RISC-V chips are vulnerable to Spectre, a hardware-level security flaw that can be exploited to steal sensitive data. This represents a resurgence of Spectre concerns, highlighting t… The Register · Aug 12, 2026 Medium spectrerisc-vhardware
vulnerability Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows A Microsoft-based hacker has developed a new zero-day vulnerability in on-prem SharePoint, allowing them to gain system privileges on fully patched Windows systems. This represents a significant security risk, as it bypa… The Register · Aug 12, 2026 High CVE-2026-50656CVE-2026-33825CVE-2026-41091zero-daysharepointvulnerability
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
vulnerability Exposed: Woeful security at UK criminal records office that led to sensitive data leak A security vulnerability in Joomla extensions has been exploited to compromise numerous websites, highlighting a broader issue of security weaknesses within open-source CMS platforms. This incident underscores the ongoin… The Register · Aug 12, 2026 Medium joomlavulnerabilityopen-source
threat-intel Mindgard Raises $30 Million to Protect AI Systems AI security startup Mindgard secured $30 million in Series A funding to bolster its platform for identifying and mitigating vulnerabilities in AI systems. The company’s platform proactively tests AI models and applicatio… SecurityWeek · Aug 12, 2026 Medium aisecurityvulnerability
vulnerability Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery Microsoft released a massive update with 62 critical and 357 important security vulnerabilities, marking a significant increase in the number of flaws discovered and highlighting the growing role of AI in vulnerability d… The Record · Aug 12, 2026 High CVE-2026-68820CVE-2026-62832vulnerabilitypatch tuesdayai
threat-intel Siemens RUGGEDCOM APE1808 A CISA advisory, in collaboration with Siemens ProductCERT, highlights vulnerabilities in Siemens RUGGEDCOM APE1808 devices when used with Fortinet NGFW. These vulnerabilities, including Cross-Site Scripting and Path Tra… CISA Advisories · Aug 12, 2026 High CVE-2026-23573CVE-2026-59839GEindustrial control systemscwe-79cwe-22
threat-intel Brit rail cops bring live facial recognition to the London Underground A security report highlighted a vulnerability where malicious actors are exploiting extension bugs in Joomla websites, allowing them to launch phishing attacks by impersonating Signal support. This follows a broader tren… The Register · Aug 12, 2026 Medium joomlaphishingvulnerability
vulnerability Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws Adobe has released critical security patches to address multiple vulnerabilities in ColdFusion, Commerce, and Campaign Classic. These flaws could lead to arbitrary code execution and privilege escalation, and while no ex… The Hacker News · Aug 12, 2026 Critical CVE-2026-48362CVE-2026-48273CVE-2026-71384vulnerabilitypatchsecurity
supply-chain Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack Over 2,500 organizations and 434,000 CI/CD pipelines were impacted by a supply chain attack involving the LiteLLM AI library. The attack stemmed from a compromised version of Aqua Security’s Trivy vulnerability scanner,… SecurityWeek · Aug 12, 2026 High supply chainaicredentials
threat-intel Santé publique France visée par une cyberattaque ? A French cybersecurity news outlet reported a potential cyberattack against Santé publique France, a public health agency. A hacker, operating under the pseudonym Cybernox and associates, claimed to have gained administr… ZATAZ · Aug 12, 2026 High FRcyberattackdata breachhealthcare data