patch

Critical Flaw Led to Azure Cosmos DB Pwnage

Critical Flaw Led to Azure Cosmos DB Pwnage 2026-07-31 at 12:04 By Ionut Arghire Named CosmosEscape, the vulnerability exposed the primary key for Cosmos DB accounts, granting full read and write access. The post Critical Flaw Led to Azure Cosmos DB Pwnage appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Critical Flaw Led to Azure Cosmos DB Pwnage Read More »

Critical Code Execution Vulnerability Patched in TeamCity 

Critical Code Execution Vulnerability Patched in TeamCity  2026-07-31 at 09:50 By Ionut Arghire Tracked as CVE-2026-63077, the security defect can be exploited without authentication via the agent polling protocol. The post Critical Code Execution Vulnerability Patched in TeamCity  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical Code Execution Vulnerability Patched in TeamCity  Read More »

Critical VM Escape Vulnerability Patched in VMware ESXi

Critical VM Escape Vulnerability Patched in VMware ESXi 2026-07-29 at 14:42 By Eduard Kovacs A total of five vulnerabilities have been patched in VMware ESXi, vCenter, Workstation, and Fusion. The post Critical VM Escape Vulnerability Patched in VMware ESXi appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical VM Escape Vulnerability Patched in VMware ESXi Read More »

Act Security Emerges from Stealth to Fight the Patch Problem

Act Security Emerges from Stealth to Fight the Patch Problem 2026-07-28 at 14:00 By Kevin Townsend Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments. The post Act Security Emerges from Stealth to Fight the Patch Problem appeared first on SecurityWeek. This article is an

Act Security Emerges from Stealth to Fight the Patch Problem Read More »

Is Patching Dead? Vulnerability Management in the Post-Mythos Era

Is Patching Dead? Vulnerability Management in the Post-Mythos Era 2026-07-23 at 18:00 By Danelle Au You cannot out-patch a machine that writes a working exploit from a vulnerability description in twenty hours. Stop trying to optimize a game you cannot win. The post Is Patching Dead? Vulnerability Management in the Post-Mythos Era appeared first on

Is Patching Dead? Vulnerability Management in the Post-Mythos Era Read More »

Chrome 150 Update Patches Severe Memory Safety Bugs

Chrome 150 Update Patches Severe Memory Safety Bugs 2026-07-20 at 11:12 By Ionut Arghire The fresh security update resolves six critical and high-severity use-after-free vulnerabilities. The post Chrome 150 Update Patches Severe Memory Safety Bugs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chrome 150 Update Patches Severe Memory Safety Bugs Read More »

SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud

SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud 2026-07-14 at 14:17 By Ionut Arghire The flaws could allow attackers to access and modify data, and cause system unavailability and request-response desynchronization. The post SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud Read More »

Zimbra Patches Critical Code Execution Vulnerability

Zimbra Patches Critical Code Execution Vulnerability 2026-07-13 at 13:03 By Ionut Arghire The flaw results in malicious code embedded in crafted emails being executed when the emails are opened. The post Zimbra Patches Critical Code Execution Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Zimbra Patches Critical Code Execution Vulnerability Read More »

Palo Alto Networks Patches 13 Vulnerabilities

Palo Alto Networks Patches 13 Vulnerabilities 2026-07-09 at 16:49 By Eduard Kovacs Buffer overflow, DoS, command injection, SSRF, authentication bypass, and other types of vulnerabilities have been found in PAN-OS software. The post Palo Alto Networks Patches 13 Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Palo Alto Networks Patches 13 Vulnerabilities Read More »

Microsoft Patches Defender ‘RoguePlanet’ Vulnerability

Microsoft Patches Defender ‘RoguePlanet’ Vulnerability 2026-07-09 at 13:28 By Eduard Kovacs The privilege escalation vulnerability tracked as CVE-2026-50656 has been patched with a Microsoft Malware Protection Engine update. The post Microsoft Patches Defender ‘RoguePlanet’ Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches Defender ‘RoguePlanet’ Vulnerability Read More »

Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari

Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari 2026-07-01 at 12:30 By Ionut Arghire The updates fix vulnerabilities in WebKit, the kernel, WebRTC, Web Extensions, and other components affecting iPhone, iPad, Mac, and Safari users. The post Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari appeared first on SecurityWeek. This article

Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari Read More »

Microsoft Patches Exploited Exchange Server Vulnerability

Microsoft Patches Exploited Exchange Server Vulnerability 2026-06-11 at 11:18 By Eduard Kovacs The company warned about zero-day attacks exploiting the Exchange Server vulnerability CVE-2026-42897 on May 14.  The post Microsoft Patches Exploited Exchange Server Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches Exploited Exchange Server Vulnerability Read More »

Microsoft Patches 200 Vulnerabilities

Microsoft Patches 200 Vulnerabilities 2026-06-09 at 22:39 By Eduard Kovacs Three of the vulnerabilities fixed with the latest Patch Tuesday updates were publicly disclosed before Microsoft addressed them. The post Microsoft Patches 200 Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches 200 Vulnerabilities Read More »

Cisco Patches Critical Vulnerability in Secure Workload

Cisco Patches Critical Vulnerability in Secure Workload 2026-05-21 at 15:24 By Ionut Arghire Insufficient validation and authentication in the Secure Workload’s REST APIs provide remote attackers with Site Admin privileges. The post Cisco Patches Critical Vulnerability in Secure Workload appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cisco Patches Critical Vulnerability in Secure Workload Read More »

Cisco Patches High-Severity Vulnerabilities in Enterprise Products

Cisco Patches High-Severity Vulnerabilities in Enterprise Products 2026-05-07 at 14:33 By Ionut Arghire Successful exploitation of the flaws could lead to code execution, server-side request forgery attacks, and denial-of-service conditions. The post Cisco Patches High-Severity Vulnerabilities in Enterprise Products appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cisco Patches High-Severity Vulnerabilities in Enterprise Products Read More »

Oracle Debuts Monthly Critical Security Patch Updates

Oracle Debuts Monthly Critical Security Patch Updates 2026-05-06 at 09:35 By Ionut Arghire Containing fixes for critical-severity vulnerabilities, the monthly rollouts will focus on addressing priority issues faster. The post Oracle Debuts Monthly Critical Security Patch Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Oracle Debuts Monthly Critical Security Patch Updates Read More »

Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server

Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server 2026-05-05 at 17:46 By Ionut Arghire The most severe of these security defects could allow remote attackers to execute arbitrary code. The post Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server Read More »

Critical Remote Code Execution Vulnerability Patched in Android

Critical Remote Code Execution Vulnerability Patched in Android 2026-05-05 at 17:46 By Eduard Kovacs CVE-2026-0073 affects Android’s System component and it can be exploited without any user interaction.  The post Critical Remote Code Execution Vulnerability Patched in Android appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical Remote Code Execution Vulnerability Patched in Android Read More »

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities 2026-05-05 at 13:20 By Eduard Kovacs The vulnerabilities were reported to Meta through its bug bounty program and were patched with updates released earlier this year. The post WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities Read More »

Scroll to Top