vulnerability Vulnérabilité dans Synology Assistant (10 août 2026) A vulnerability has been identified in Synology Assistant, allowing an attacker to compromise data confidentiality, data integrity, and cause a denial of service. Users of versions prior to 7.0.7-50095 are strongly advis… CERT-FR · Aug 10, 2026 Medium CVE-2026-4793synologyvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans HPE Aruba Networking Private 5G Core (10 août 2026) Multiple vulnerabilities have been discovered in HPE Aruba Networking Private 5G Core, allowing attackers to elevate privileges and bypass security policies. These vulnerabilities are present in older versions of the sof… CERT-FR · Aug 10, 2026 Medium CVE-2026-33377CVE-2026-54763vulnerabilitysecurityaruba
vulnerability Multiples vulnérabilités dans Roundcube (10 août 2026) Multiple vulnerabilities have been discovered in Roundcube Webmail, allowing attackers to execute arbitrary code remotely, compromise data confidentiality, and forge server-side requests. These flaws exist in versions 1.… CERT-FR · Aug 10, 2026 High vulnerabilitywebmailsecurity
vulnerability Multiples vulnérabilités dans VMware Tanzu Greenplum (10 août 2026) Multiple vulnerabilities have been discovered in VMware Tanzu Greenplum. These vulnerabilities allow an attacker to cause a security issue, though the specific nature of the issue is not detailed. Users are advised to co… CERT-FR · Aug 10, 2026 Medium CVE-2018-11798CVE-2019-0205CVE-2020-13949vulnerabilitycvepatch
vulnerability Multiples vulnérabilités dans ClamAV (10 août 2026) Multiple vulnerabilities have been discovered in ClamAV, potentially allowing attackers to compromise data confidentiality, cause denial of service, and introduce an unspecified security issue. These vulnerabilities affe… CERT-FR · Aug 10, 2026 Medium CVE-2025-8088CVE-2026-20337CVE-2026-20338vulnerabilityantivirusclamav
threat-intel Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default Several security-related stories are emerging, including a focus on AI security and vulnerabilities, a Russian phishing campaign mimicking Signal support, and ongoing efforts to improve security across various Linux and… The Register · Aug 8, 2026 Medium RUIRaisecurityphishing
vulnerability Critical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise Data A critical one-click vulnerability, dubbed RovoBlast, has been discovered in Atlassian’s Rovo AI assistant, allowing attackers to inject malicious prompts and exfiltrate sensitive data from various Atlassian products and… SecurityWeek · Aug 8, 2026 Critical aiprompt injectiondata exfiltration
vulnerability Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers Atlassian’s Rovo assistant has two vulnerabilities that could allow attackers to exfiltrate data. The first, a one-click link flaw, has been patched by Atlassian. The second, a content-borne prompt injection attack, allo… The Hacker News · Aug 8, 2026 High prompt-injectiondata-exfiltrationatlassian
vulnerability Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication A zero-day vulnerability in Metabase has been exploited in the wild, allowing unauthenticated attackers to gain administrator access to the application and steal data. The vulnerability affects versions 1.58 and above, a… The Hacker News · Aug 8, 2026 Critical CVE-2023-38646zero-daysql injectiondata breach
threat-intel OpenAI pledges to add Astra security as Anthropic loosens Fable's leash OpenAI is bolstering its AI security by integrating Astra, while Anthropic is loosening restrictions on its Fable system. This shift reflects growing concerns about the potential risks associated with increasingly autono… The Register · Aug 7, 2026 Medium IRaisecurityvulnerability
threat-intel AI-Generated Patches Fail Half the Time A study by 1Password found that AI-generated patches are significantly flawed, with only around 46% successfully fixing vulnerabilities and many introducing new bugs or requiring code modification. The research, dubbed F… Dark Reading · Aug 7, 2026 High UNaipatchingvulnerability
threat-intel Beware cut-price AI services that read your every word A massive data breach occurred when hundreds of individuals paid exorbitant prices for discounted access to Anthropic's Claude AI model, exposing their personal data to malicious actors. The incident highlights the risks… Graham Cluley · Aug 7, 2026 High aidata-breachsecurity
threat-intel N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands A flaw in N-able’s God mode feature allowed attackers to gain unauthorized access to customer networks. The vendor has confirmed that attackers exploited this vulnerability to compromise systems, and a second hotfix has… The Register · Aug 7, 2026 Critical CVE-2026-18577vulnerabilityremote managementcyberattack
data-breach Scot NHS trust probes access to medical records of 9-year-old girl after man arrested on suspicion of murder A Scottish NHS trust is investigating a security breach that may have exposed the medical records of a 9-year-old girl. This follows the arrest of a man on suspicion of murder, and authorities are examining how unauthori… The Register · Aug 7, 2026 High UKvulnerabilitysharepointhealthcare
threat-intel Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) This article summarizes several cybersecurity vendor announcements and research findings from Black Hat 2026. Key developments include 1Password's research on AI-generated patches and new PAM offerings, Cogent's Mythos-c… SecurityWeek · Aug 7, 2026 High CVE-2026-56181CVE-2026-63913aisecuritythreat intelligence
vulnerability Critical Vulnerabilities Patched With Chrome 151 Update Google released Chrome 151 to address 370 security vulnerabilities, primarily memory safety bugs, with 41 classified as critical. The update aims to prevent data corruption, crashes, and potential code execution exploits… SecurityWeek · Aug 7, 2026 High memory-safetychromevulnerability
vulnerability Multiples vulnérabilités dans le noyau Linux de Red Hat (07 août 2026) Multiple vulnerabilities have been discovered in Red Hat's Linux kernel. Some of these vulnerabilities allow an attacker to cause arbitrary code execution, privilege escalation, and a denial-of-service attack. These vuln… CERT-FR · Aug 7, 2026 High CVE-2025-10263CVE-2025-40026CVE-2025-54518linuxkernelsecurity
vulnerability Multiples vulnérabilités dans le noyau Linux d'Ubuntu (07 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Several of these vulnerabilities allow for privilege escalation, data confidentiality breaches, and a security issue not specified by the publi… CERT-FR · Aug 7, 2026 High CVE-2022-49803CVE-2022-49961CVE-2022-50073linuxvulnerabilitysecurity
threat-intel Multiples vulnérabilités dans le noyau Linux de Debian LTS (07 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian LTS. These vulnerabilities allow for privilege escalation, data compromise, and denial of service. The affected Debian versions include 11 (Bull… CERT-FR · Aug 7, 2026 High CVE-2022-49803CVE-2022-50114CVE-2023-52494vulnerabilitylinuxkernel
vulnerability Multiples vulnérabilités dans le noyau Linux de SUSE (07 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of SUSE. These vulnerabilities allow an attacker to bypass security policies and create an unspecified security issue. The affected system is SUSE Linux M… CERT-FR · Aug 7, 2026 High CVE-2026-23240CVE-2026-31738CVE-2026-43038linuxkernelsecurity