CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Live advisory feed

Security Advisory Fusion for CSIRTs, SOCs & Defenders

Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.

Advisories tracked
20,890
Known exploited
1,782
Sources online
24
Last sync
3H AGO
9,404 records · page 32 / 189 · nvd firehose hidden — show all

GHSA-8mpj-m6qm-5qr8: Mistune directives/include: mutual `.. include::` recursion crashes the renderer with `RecursionError`, denial of service via two attacker-controlled markdown files

Summary Type: Uncontrolled recursion via mutual include. The Include directive checks for direct self-reference (a.md cannot include a.md), but does not detect indirect cycles. Two markdown files that include each other (a.md → includes b.md → includes a.md) cause unbounded recu

mediumCVSS 5.3CVE-2026-59927ghsa2026-07-20

USN-8572-1: Wget vulnerability

It was discovered that Wget did not properly validate the IP address provided in an FTP PASV response when operating in FTP passive mode. A remote attacker controlling a malicious FTP server, or an HTTP server that redirects to an FTP URL, could possibly use this issue to redirec

unknownCVE-2026-15146ubuntu2026-07-20

HPE security advisory (AV26-722)

Serial number: AV26-722 Date: July 20, 2026 On July 20, 2026, HPE published a security advisory to address vulnerabilities in the following product: HPE Telco Automated Assurance – version v1.4 and prior The Cyber Centre encourages users and administrators to review the provided

unknowncccs2026-07-20

ServiceNow security advisory (AV26-693) – Update 1

Serial number: AV26-693 Date: July 14, 2026 Updated: July 20, 2026 On July 13, 2026, ServiceNow published a security advisory to address a critical vulnerability in the following products: Brazil - versions prior to Brazil EA and Brazil GA Australia - versions prior to Australia

criticalpublic exploitCVE-2026-6875cccs2026-07-20

Zimbra security advisory (AV26-721)

Serial number: AV26-721 Date: July 20, 2026 On July 20, 2026, Zimbra published a security advisory to address vulnerabilities in the following product: Zimbra Collaboration Suite (ZCS) Classic Web Client – versions prior to v10.1.20 The Cyber Centre encourages users and administr

unknowncccs2026-07-20

GitHub security advisory (AV26-720)

Serial number: AV26-720 Date: July 20, 2026 On July 16, 2026, GitHub published security advisories to address vulnerabilities in the following products: GitHub Enterprise Server – versions 3.21.x prior to 3.21.3 GitHub Enterprise Server – versions 3.20.x prior to 3.20.5 GitHub En

unknowncccs2026-07-20

Red Hat security advisory (AV26-719)

Serial number: AV26-719 Date: July 20, 2026 Between July 13 and 19, 2026, Red Hat published security advisories to address vulnerabilities in multiple products. Included were updates to address vulnerabilities in the Linux kernel for the following products: Red Hat CodeReady Linu

unknowncccs2026-07-20

[Control systems] CISA ICS security advisories (AV26-718)

Serial number: AV26–718 Date: July 20, 2026 Between July 13 and 19, 2026, CISA published ICS advisories to address vulnerabilities in the following products: ABB 800xA for Advant Master – multiple versions ABB Ability Edgenius – multiple versions and models ABB Control Builder A

unknowncccs2026-07-20

Ubuntu security advisory (AV26-717)

Serial number: AV26-717 Date: July 20, 2026 Between July 13 and 19, 2026, Ubuntu published security notices to address vulnerabilities in the Linux kernel affecting the following products: Ubuntu 14.04 LTS Ubuntu 16.04 LTS Ubuntu 20.04 LTS Ubuntu 24.04 LTS Ubuntu 25.10 The Cyber

unknowncccs2026-07-20

Dell security advisory (AV26-716)

Serial number: AV26-716 Date: July 20, 2026 Between July 13 and 19, 2026, Dell published security advisories to address vulnerabilities in multiple products: Dell DRAC9 – versions prior to 7.00.00.184 Dell PowerEdge Server – multiple versions and models Dell PowerProtect Data Man

unknowncccs2026-07-20

IBM security advisory (AV26-715)

Serial number: AV26-715 Date: July 20, 2026 Between July 13 and 19, 2026, IBM published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following: IBM API Connect V12 OnPrem – versions v12.1.0.0 to v12.1.1.0 IBM Automati

criticalcccs2026-07-20

USN-8565-1: SQLite vulnerabilities

It was discovered that SQLite did not properly handle NULL pointer dereferences in the Session Extension when applying a corrupt changeset. An attacker could possibly use this issue to cause SQLite to crash, resulting in a denial of service. (CVE-2026-50812) It was discovered tha

USN-8564-1: PHP vulnerabilities

It was discovered that PHP incorrectly handled certain TLS setup failures, resulting in a NULL pointer dereference. An attacker could possibly use this issue to cause PHP to crash, resulting in a denial of service. This issue only affected Ubuntu 26.04 LTS. (CVE-2026-12184) It wa

← NewerOlder →