CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Live advisory feed

Security Advisory Fusion for CSIRTs, SOCs & Defenders

Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.

Advisories tracked
20,904
Known exploited
1,782
Sources online
24
Last sync
12M AGO
9,405 records · page 36 / 189 · nvd firehose hidden — show all

USN-8477-2: tar regression

USN-8477-1 fixed a vulnerability in tar. The update introduced a regression that could cause tar to fail to extract certain valid files. This update fixes the problem. Original advisory details: It was discovered that tar incorrectly handled certain crafted archive files. An atta

unknownCVE-2026-5704ubuntu2026-07-16

Fortinet security advisory (AV26-568) – Update 1

Serial number: AV26-568 Date: June 9, 2026 Updated: July 16, 2026 On June 9, 2026, Fortinet published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following: FortiSandbox 5.0 – versions 5.0.0 to 5.0.5 FortiSandbox 4.4

criticalexploitedpublic exploitCVE-2026-25089cccs2026-07-16

Grafana security advisory (AV26-710)

Serial number: AV26-710 Date: July 16, 2026 On July 15, 2026, Grafana published security advisories to address vulnerabilities in the following products: Grafana MCP Server – version 0.17.1 and prior Grafana Loki – version 3.7.0 and prior The Cyber Centre encourages users and adm

unknownpublic exploitCVE-2026-15583CVE-2026-21729cccs2026-07-16

JetBrains security advisory (AV26-709)

Serial number: AV26-709 Date: July 16, 2026 On July 14, 2026, JetBrains published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following products: JetBrains TeamCity – versions prior to 2026.1.2 JetBrains YouTrack – m

criticalcccs2026-07-16

USN-8556-1: Ruby vulnerabilities

It was discovered that the Net::IMAP client in Ruby did not properly sanitize Symbol arguments passed to IMAP commands. A remote attacker controlling a malicious IMAP server, or able to influence command arguments, could use this to inject arbitrary IMAP commands via CRLF sequenc

Splunk security advisory (AV26-708)

Serial number: AV26-708 Date: July 16, 2026 On July 15, 2026, Splunk published security advisories to address vulnerabilities in the following products. Included were critical updates for the following: Splunk Enterprise – multiple versions and platforms Splunk Cloud Platform – m

criticalcccs2026-07-16

Zoom security advisory (AV26-707)

Serial number: AV26-707 Date: July 16, 2026 On July 14, 2026, Zoom published security advisories to address vulnerabilities in the following products: Remote Control for Zoom Contact Center for Windows – versions prior to 7.0.0 Zoom Meeting SDK for Windows – versions prior to 6.6

unknowncccs2026-07-16

Siemens SICAM 8

View CSAF Summary Multiple SICAM 8 products are affected by multiple vulnerabilities that could lead to denial of service, namely: - SICAM A8000 Device firmware - CPCI85 for CP-8031/CP-8050 - SICORE for CP-8010/CP-8012 - SICAM EGS Device firmware - CPCI85 - SICAM S8000 - SICORE S

SALTO ProAccess Space

View CSAF Summary Successful exploitation of this vulnerability allows an authenticated attacker to escalate privileges and access spaces outside their assigned partition, within the same Salto ProAccess Space installation or system. Exploitation requires valid authenticated oper

criticalCVE-2026-11889cisa2026-07-16

Rockwell Automation FactoryTalk DataMosaix

View CSAF Summary Successful exploitation of this vulnerability could allow an authenticated attacker to inject malicious scripts on the server. The following versions of Rockwell Automation FactoryTalk DataMosaix are affected: DataMosaix Private Cloud <=8.02 (CVE-2026-9292) CVSS

criticalCVE-2026-9292cisa2026-07-16

Rockwell Automation Flex 5000 Adapter

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition on the affected product. The following versions of Rockwell Automation Flex 5000 Adapter are affected: Flex 5000 Adapter 6.011 (CVE-2026-12659) CVSS Vend

criticalCVE-2026-12659cisa2026-07-16

Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition. The following versions of Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT are affected: 1756-EN3 <=V12.001 (CVE-2026-9653) 1756-EN2 <=V12.001 (CVE

criticalCVE-2026-9653cisa2026-07-16
← NewerOlder →