Vulnerabilities

Android’s September 2026 Updates Patch 180 Vulnerabilities

Android’s September 2026 Updates Patch 180 Vulnerabilities 2026-09-09 at 19:30 By Ionut Arghire The security updates resolve critical flaws across Android’s Framework, System, and Kernel components. The post Android’s September 2026 Updates Patch 180 Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Android’s September 2026 Updates Patch 180 Vulnerabilities Read More »

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories 2026-09-09 at 19:22 By Ionut Arghire Major chipmakers announced patches for vulnerabilities recently discovered in their products. The post Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chipmaker Patch Tuesday: Nvidia, AMD, Arm Issue Security Advisories Read More »

Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension

Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension 2026-09-09 at 17:33 By Ionut Arghire The critical, unauthenticated bugs allow attackers to bypass authentication and proxy a user’s browser traffic. The post Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension Read More »

Expanding the Attack Surface: Analyzing Nightmare-Eclipse’s Latest PoCs

Expanding the Attack Surface: Analyzing Nightmare-Eclipse’s Latest PoCs 2026-09-09 at 15:37 By Serhii Melnyk and Timmy Lister In our previous blog, we explored a series of disclosures from the leak persona Nightmare-Eclipse that focused heavily on Microsoft’s ecosystem, including Windows Defender, Cloud Files, and core operating system functionality. This article is an excerpt from LevelBlue SpiderLabs […]

Expanding the Attack Surface: Analyzing Nightmare-Eclipse’s Latest PoCs Read More »

ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws

ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws 2026-09-09 at 13:49 By Ionut Arghire AVEVA and Rockwell Automation also released patches for vulnerabilities affecting industrial control system products. The post ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws Read More »

Ivanti Patches Critical Flaws Across Enterprise Security Products

Ivanti Patches Critical Flaws Across Enterprise Security Products 2026-09-09 at 13:28 By Ionut Arghire Six critical vulnerabilities in Neurons for ITSM could enable remote code execution, while Sentry and EPMM received patches for authentication bypass flaws. The post Ivanti Patches Critical Flaws Across Enterprise Security Products appeared first on SecurityWeek. This article is an excerpt […]

Ivanti Patches Critical Flaws Across Enterprise Security Products Read More »

Microsoft Patches Record 974 Vulnerabilities, Including Two Exploited Zero-Days

Microsoft Patches Record 974 Vulnerabilities, Including Two Exploited Zero-Days 2026-09-08 at 22:20 By Ionut Arghire The record-breaking September security update fixes two exploited privilege-escalation zero-days and 20 potentially wormable vulnerabilities. The post Microsoft Patches Record 974 Vulnerabilities, Including Two Exploited Zero-Days appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches Record 974 Vulnerabilities, Including Two Exploited Zero-Days Read More »

Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day

Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day 2026-09-08 at 21:37 By Ionut Arghire Tracked as CVE-2026-75650, the exploited defect allows unauthenticated attackers to execute arbitrary code. The post Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Adobe Patches Over 170 Vulnerabilities, Including Commerce Zero-Day Read More »

MikroTik Patches Critical Flaws Chained to Hack Routers

MikroTik Patches Critical Flaws Chained to Hack Routers 2026-09-08 at 14:15 By Ionut Arghire Dubbed MikroTrick, the bugs allow attackers to bypass authentication, overwrite configuration files, and take over devices. The post MikroTik Patches Critical Flaws Chained to Hack Routers appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

MikroTik Patches Critical Flaws Chained to Hack Routers Read More »

N-able Patches Critical Zero-Day in N-central

N-able Patches Critical Zero-Day in N-central 2026-09-08 at 13:37 By Ionut Arghire Administrators are advised to check their deployments for newly created user accounts they don’t recognize. The post N-able Patches Critical Zero-Day in N-central appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

N-able Patches Critical Zero-Day in N-central Read More »

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits 2026-09-07 at 15:15 By Ionut Arghire The proof-of-concept (PoC) exploits lead to privilege escalation, spawning a shell with System privileges. The post Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits Read More »

Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

Adobe Commerce Zero-Day Exploited to Backdoor Online Stores 2026-09-07 at 14:58 By Ionut Arghire The StyleSmuggler zero-day allows attackers to execute code and deploy a stealthy backdoor on Adobe Commerce and Magento stores. The post Adobe Commerce Zero-Day Exploited to Backdoor Online Stores appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Adobe Commerce Zero-Day Exploited to Backdoor Online Stores Read More »

Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites

Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites 2026-09-05 at 16:00 By Ionut Arghire Tracked as CVE-2026-32475 (CVSS score of 9.8), the bug described as an arbitrary file upload issue in the function that handles form submissions. The post Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites appeared first on SecurityWeek. This article […]

Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites Read More »

Sangoma Switchvox Vulnerabilities Exploited in the Wild

Sangoma Switchvox Vulnerabilities Exploited in the Wild 2026-09-04 at 16:23 By Ionut Arghire Tracked as CVE-2026-9586, the unauthenticated SQL injection flaw can be exploited remotely for arbitrary code execution. The post Sangoma Switchvox Vulnerabilities Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Sangoma Switchvox Vulnerabilities Exploited in the Wild Read More »

12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover

12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover 2026-09-04 at 15:06 By Ionut Arghire Dubbed PostGREShell, CVE-2026-6471 turns low-level replication access into code execution, permanent superuser privileges and a persistent database backdoor. The post 12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover Read More »

VMware Workstation and Fusion Updates Patch Critical Vulnerability

VMware Workstation and Fusion Updates Patch Critical Vulnerability 2026-09-04 at 14:42 By Ionut Arghire The flaws could allow attackers with administrative access to a virtual machine to execute code on the host system. The post VMware Workstation and Fusion Updates Patch Critical Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

VMware Workstation and Fusion Updates Patch Critical Vulnerability Read More »

Google Patches 6th Chrome Zero-Day of 2026

Google Patches 6th Chrome Zero-Day of 2026 2026-09-04 at 14:31 By Ionut Arghire Google’s Chrome 152 security update resolves 12 vulnerabilities, including a high-severity type confusion flaw in the V8 engine. The post Google Patches 6th Chrome Zero-Day of 2026 appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Google Patches 6th Chrome Zero-Day of 2026 Read More »

Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability

Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability 2026-09-03 at 13:40 By Ionut Arghire The high-severity SQL injection flaw (CVE-2026-19949) could allow unauthenticated attackers to achieve remote code execution. The post Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability Read More »

Scroll to Top