vulnerability Multiples vulnérabilités dans Elastic Kibana (14 août 2026) Multiple vulnerabilities have been discovered in Elastic Kibana. Some of these vulnerabilities allow for privilege escalation, remote denial-of-service, and data confidentiality compromise. Elastic has released several s… CERT-FR · Aug 14, 2026 High CVE-2015-8131CVE-2026-49089CVE-2026-72629kibanaelasticvulnerability
vulnerability Multiples vulnérabilités dans les produits IBM (14 août 2026) Multiple vulnerabilities have been discovered in IBM products, including remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect a wide range of IBM products, including Db… CERT-FR · Aug 14, 2026 High CVE-2021-23337CVE-2023-44487CVE-2024-3651vulnerabilitysecuritypatch
vulnerability Magento visé quelques heures après la divulgation d’un correctif A critical vulnerability (CVE-2026-71362) in Adobe Commerce, Commerce B2B, and Magento Open Source has been actively exploited shortly after its patch release. While no confirmed customer breaches have been publicly repo… ZATAZ · Aug 13, 2026 Critical CVE-2026-71362session hijackingpatchecommerce
vulnerability Adobe Commerce Bug Targeted Immediately After Disclosure A critical vulnerability in Adobe Commerce and Magento allowed unauthenticated attackers to gain access to other customer accounts immediately after its disclosure. Adobe swiftly released a patch, but threat actors were… SecurityWeek · Aug 13, 2026 Critical CVE-2026-71362vulnerabilityecommerceadobe
vulnerability Siemens Simcenter Femap Siemens Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads BMP files. An attacker could exploit these flaws to execute code within the current process, potentiall… CISA Advisories · Aug 13, 2026 High CVE-2026-59700CVE-2026-59701vulnerabilitycontrol-systemfile-parsing
vulnerability Fortinet Patches Authentication Flaws in FortiWeb and FortiManager Fortinet has released patches for eight security vulnerabilities across its products, including critical authentication flaws in FortiWeb and FortiManager. These vulnerabilities could allow attackers to gain unauthorized… SecurityWeek · Aug 13, 2026 Critical CVE-2026-26035CVE-2026-70468CVE-2026-70465vulnerabilityauthenticationpatch
vulnerability Multiples vulnérabilités dans les produits Fortinet (13 août 2026) Multiple vulnerabilities have been discovered in Fortinet products, including several that could allow for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various… CERT-FR · Aug 13, 2026 High CVE-2026-26035CVE-2026-49975CVE-2026-70465vulnerabilitypatchremote code execution
vulnerability Vulnérabilité dans WordPress (13 août 2026) A remote code execution vulnerability has been identified in older versions of WordPress, allowing attackers to execute arbitrary code. This affects WordPress versions prior to 7.0.4, and requires immediate patching to p… CERT-FR · Aug 13, 2026 Critical CVE-2026-65640wordpressrcevulnerability
vulnerability Multiples vulnérabilités dans les produits Adobe (13 août 2026) Multiple vulnerabilities have been discovered in Adobe products, including Adobe Commerce and ColdFusion. These vulnerabilities allow for remote code execution, privilege escalation, denial of service, and circumvention… CERT-FR · Aug 13, 2026 High CVE-2026-21273CVE-2026-21279CVE-2026-25652vulnerabilitypatchadobe
threat-intel Multiples vulnérabilités dans les produits Palo Alto Networks (13 août 2026) Multiple vulnerabilities have been discovered in Palo Alto Networks products, including remote code execution, privilege escalation, and denial-of-service attacks. Several CVEs have been identified, impacting various pro… CERT-FR · Aug 13, 2026 High CVE-2026-0291CVE-2026-0292CVE-2026-0293vulnerabilitythreatsecurity
vulnerability Vulnérabilité dans les produits Foxit (13 août 2026) A vulnerability has been identified in Foxit PDF Editor and Reader software, allowing an attacker to compromise data integrity. Users of older versions of these products are at risk of exploitation. The vendor has releas… CERT-FR · Aug 13, 2026 Medium CVE-2026-18622pdfvulnerabilitydata integrity
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
vulnerability Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws Adobe has released critical security patches to address multiple vulnerabilities in ColdFusion, Commerce, and Campaign Classic. These flaws could lead to arbitrary code execution and privilege escalation, and while no ex… The Hacker News · Aug 12, 2026 Critical CVE-2026-48362CVE-2026-48273CVE-2026-71384vulnerabilitypatchsecurity
vulnerability Ivanti EPM Update Patches Remotely Exploitable Flaws Ivanti has released patches to address four vulnerabilities in its Endpoint Manager (EPM) and Neurons for MDM products. Two of the EPM flaws are remotely exploitable, allowing attackers to steal credentials and gain cont… SecurityWeek · Aug 12, 2026 High CVE-2026-18129CVE-2026-18125CVE-2026-18127vulnerabilitypatchremote
vulnerability SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code SAP has released patches to address a critical security flaw in its Commerce Cloud (Data Hub Adapter) that could allow unauthenticated attackers to execute arbitrary code. This vulnerability stems from insufficient autho… The Hacker News · Aug 12, 2026 Critical CVE-2026-58231CVE-2026-44772CVE-2026-34265securitypatcharbitrary code execution
vulnerability SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform SonicWall has released patches to address eight critical vulnerabilities in its discontinued GMS platform and Email Security products. These flaws, including remote code execution and command injection, could allow attac… SecurityWeek · Aug 12, 2026 Critical CVE-2026-66147CVE-2026-66145CVE-2026-66149vulnerabilitypatchrce
vulnerability Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS A critical vulnerability (CVE-2026-20349, CVSS: 8.6) in Cisco ASA and FTD software has been actively exploited in the wild. This flaw, triggered by a crafted HTTP request, can lead to a denial-of-service condition and is… The Hacker News · Aug 12, 2026 Critical CVE-2026-20349cveasaftd
vulnerability Multiples vulnérabilités dans les produits Ivanti (12 août 2026) Multiple vulnerabilities have been discovered in Ivanti products, including Endpoint Manager and Neurons for MDM. These flaws could lead to data integrity compromise, data confidentiality breaches, and denial-of-service… CERT-FR · Aug 12, 2026 Medium CVE-2026-18125CVE-2026-18127CVE-2026-18129ivantivulnerabilityendpoint
vulnerability Multiples vulnérabilités dans les produits Siemens (12 août 2026) Siemens has announced multiple vulnerabilities in its industrial automation products, including Desigo DXR2, PXC3, PXC4, PXC5, and IoT2050 Advanced. These vulnerabilities could allow attackers to execute arbitrary code r… CERT-FR · Aug 12, 2026 High CVE-2026-58115CVE-2026-59693industrial control systemsicscybersecurity
vulnerability Multiples vulnérabilités dans Google Chrome (12 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions of the browser on Windows, Linux, and macOS. The exact nature of the security issue is not specified by the publisher, but users ar… CERT-FR · Aug 12, 2026 Medium CVE-2026-19556CVE-2026-19557CVE-2026-19558chromevulnerabilitysecurity