vulnerability Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access Threat actors are actively exploiting a recently patched critical vulnerability (CVE-2026-59310) in Broadcom VMware vCenter to gain persistent remote access. QUIRSO discovered a campaign involving 361 unique victim IP ad… The Hacker News · Aug 12, 2026 High CVE-2026-59310CVE-2026-59309GEUNTUvulnerabilityexploitreverse_ssh
vulnerability Ivanti EPM Update Patches Remotely Exploitable Flaws Ivanti has released patches to address four vulnerabilities in its Endpoint Manager (EPM) and Neurons for MDM products. Two of the EPM flaws are remotely exploitable, allowing attackers to steal credentials and gain cont… SecurityWeek · Aug 12, 2026 High CVE-2026-18129CVE-2026-18125CVE-2026-18127vulnerabilitypatchremote
supply-chain Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations A supply-chain attack linked to Aqua Security's Trivy scanner has resulted in the release of two malicious LiteLLM packages containing credential-stealing code. CloudSEK identified over 2,500 organizations potentially ex… The Hacker News · Aug 12, 2026 High CVE-2026-33634USEUsupply chaincredential theftpypi
vulnerability ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact Several major industrial automation vendors – Siemens, Schneider Electric, and Phoenix Contact – released security patches to address critical vulnerabilities in their ICS products. These flaws could allow attackers to e… SecurityWeek · Aug 12, 2026 High icsindustrial control systemspatch tuesday
vulnerability SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform SonicWall has released patches to address eight critical vulnerabilities in its discontinued GMS platform and Email Security products. These flaws, including remote code execution and command injection, could allow attac… SecurityWeek · Aug 12, 2026 Critical CVE-2026-66147CVE-2026-66145CVE-2026-66149vulnerabilitypatchrce
vulnerability Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS A critical vulnerability (CVE-2026-20349, CVSS: 8.6) in Cisco ASA and FTD software has been actively exploited in the wild. This flaw, triggered by a crafted HTTP request, can lead to a denial-of-service condition and is… The Hacker News · Aug 12, 2026 Critical CVE-2026-20349cveasaftd
vulnerability Cisco Patches Firewall Zero-Day Exploited for DoS Attacks Cisco has released patches to address a zero-day vulnerability (CVE-2026-20349) in its firewall software, which allows unauthenticated attackers to cause a denial-of-service attack. Cisco detected active exploitation of… SecurityWeek · Aug 12, 2026 High CVE-2026-20349zero-dayvulnerabilityasa
vulnerability Multiples vulnérabilités dans les produits Siemens (12 août 2026) Siemens has announced multiple vulnerabilities in its industrial automation products, including Desigo DXR2, PXC3, PXC4, PXC5, and IoT2050 Advanced. These vulnerabilities could allow attackers to execute arbitrary code r… CERT-FR · Aug 12, 2026 High CVE-2026-58115CVE-2026-59693industrial control systemsicscybersecurity
vulnerability Multiples vulnérabilités dans Microsoft Azure (12 août 2026) Multiple vulnerabilities have been discovered within Microsoft Azure, potentially allowing an attacker to elevate privileges, compromise data confidentiality, and bypass security policies. These vulnerabilities affect va… CERT-FR · Aug 12, 2026 High CVE-2026-47299CVE-2026-57104CVE-2026-65806azurevulnerabilitysecurity
vulnerability Multiples vulnérabilités dans les produits SonicWall (12 août 2026) SonicWall products are experiencing multiple vulnerabilities, including remote code execution and privilege escalation, allowing attackers to compromise data confidentiality and integrity. These vulnerabilities have been… CERT-FR · Aug 12, 2026 High CVE-2026-18634CVE-2026-66145CVE-2026-66146sonicwallvulnerabilityremote code execution
vulnerability Multiples vulnérabilités dans Microsoft .Net (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft .NET, allowing for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various versions of .NET Framework an… CERT-FR · Aug 12, 2026 High CVE-2026-58641CVE-2026-62871CVE-2026-62872vulnerabilityremote code executionprivilege escalation
vulnerability Multiples vulnérabilités dans les produits Ivanti (12 août 2026) Multiple vulnerabilities have been discovered in Ivanti products, including Endpoint Manager and Neurons for MDM. These flaws could lead to data integrity compromise, data confidentiality breaches, and denial-of-service… CERT-FR · Aug 12, 2026 Medium CVE-2026-18125CVE-2026-18127CVE-2026-18129ivantivulnerabilityendpoint
vulnerability Multiples vulnérabilités dans Microsoft Edge (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, allowing an attacker to trigger arbitrary code execution and a security issue not specified by the vendor. These vulnerabilities are part of a larger set o… CERT-FR · Aug 12, 2026 High CVE-2026-19137CVE-2026-19138CVE-2026-19139vulnerabilitysecuritymicrosoft
vulnerability Multiples vulnérabilités dans les produits Intel (12 août 2026) Multiple vulnerabilities have been discovered in Intel products, impacting a range of their processors. These vulnerabilities could lead to privilege escalation, data confidentiality breaches, and denial of service attac… CERT-FR · Aug 12, 2026 High intelvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Google Chrome (12 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions of the browser on Windows, Linux, and macOS. The exact nature of the security issue is not specified by the publisher, but users ar… CERT-FR · Aug 12, 2026 Medium CVE-2026-19556CVE-2026-19557CVE-2026-19558chromevulnerabilitysecurity
vulnerability Vulnérabilité dans les produits Cisco (12 août 2026) A vulnerability in Cisco’s Adaptive Security Appliance (ASA) allows attackers to trigger a denial-of-service attack. Cisco has confirmed that this vulnerability is actively being exploited, and users are urged to apply t… CERT-FR · Aug 12, 2026 High CVE-2026-20349ciscoasavulnerability
threat-intel Multiples vulnérabilités dans les produits Microsoft (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft products, some of which allow an attacker to cause arbitrary code execution, privilege escalation, and a denial-of-service attack. These vulnerabilities span a w… CERT-FR · Aug 12, 2026 High CVE-2026-40375CVE-2026-47285CVE-2026-54123vulnerabilitysecuritymicrosoft
threat-intel Multiples vulnérabilités dans Microsoft Windows (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Windows, including remote code execution, privilege escalation, and denial-of-service attacks. Microsoft indicates that vulnerability CVE-2026-42976 is actively… CERT-FR · Aug 12, 2026 High CVE-2026-68820CVE-2026-42976CVE-2026-49179vulnerabilityremote code executionprivilege escalation
vulnerability Multiples vulnérabilités dans Microsoft Office (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Office, some of which allow an attacker to trigger arbitrary code execution, privilege escalation, and data confidentiality breaches. These vulnerabilities are p… CERT-FR · Aug 12, 2026 High CVE-2026-58651CVE-2026-62842CVE-2026-62882vulnerabilitysecuritymicrosoft
vulnerability Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities Microsoft released its August 2026 security update, containing 421 vulnerabilities across a wide range of products, with 62 marked as critical. Several vulnerabilities, including those affecting Windows, SharePoint, Azur… Cisco Talos · Aug 11, 2026 High CVE-2026-68820CVE-2026-62893CVE-2026-65665vulnerabilityremote code executionprivilege escalation