CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Live advisory feed

Security Advisory Fusion for CSIRTs, SOCs & Defenders

Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.

Advisories tracked
21,369
Known exploited
1,787
Sources online
24
Last sync
34M AGO
9,499 records · page 96 / 190 · nvd firehose hidden — show all

GHSA-3g4q-2f67-2gvh: netfoil has a resource leak in LRU cache

Summary When an entry was removed from the LRU cache, a pointer to the removed element was not properly cleaned up. Impact A local attacker can get netfoil to use more memory. By default this is limited to 100MB via systemd, which would trigger service restarts when reached.

lowghsa2026-07-07

Adobe security advisory (AV26-647) – Update 2

Serial number: AV26–647 Date: July 2, 2026 Updated: July 7, 2026 On June 30, 2026, Adobe published security advisories to address critical vulnerabilities in the following products: Adobe ColdFusion 2025 – Update 9 and prior Adobe ColdFusion 2023 – Update 20 and prior Adobe Campa

criticalexploitedpublic exploitCVE-2026-48282cccs2026-07-07

Google Chrome security advisory (AV26-669)

Serial number: AV26-669 Date: July 7, 2026 On July 7, 2026, Google published a security advisory to address vulnerabilities in the following product: Stable Channel Chrome for Desktop – versions prior to0.7871.100/101 (Windows/Mac), and 150.0.7871.100 (Linux) The Cyber Centre enc

unknowncccs2026-07-07

HPE security advisory (AV26-668)

Serial number: AV26-668 Date: July 7, 2026 On July 7, 2026, HPE published security advisories to address vulnerabilities in multiple products. Included were updates for the following: HPE Aruba Networking Private 5G Core – 1.26.1.0 and prior The Cyber Centre encourages users and

unknowncccs2026-07-07

Zimbra security advisory (AV26-667)

Serial number: AV26-667 Date: July 7, 2026 On July 7, 2026, Zimbra published a security advisory to address vulnerabilities in the following product: Zimbra Collaboration Suite (ZCS) Classic Web Client – versions prior to v10.1.19 The Cyber Centre encourages users and administrat

unknowncccs2026-07-07

Django security advisory (AV26-666)

Serial number: AV26-666 Date: July 7, 2026 On July 7, 2026, Django published a security advisory to address vulnerabilities in the following products: Django 5.2 – versions prior to 5.2.16 Django 6.0 – versions prior to 6.0.7 The Cyber Centre encourages users and administrators t

unknowncccs2026-07-07

Samsung mobile security advisory (AV26-665)

Serial number: AV26-665 Date: July 7, 2026 On July 7, 2026, Samsung published a security update to address vulnerabilities in the following product: Samsung mobile devices – versions prior to SMR-JUL-2026 Release 1 The Cyber Centre encourages users and administrators to review th

unknowncccs2026-07-07

[Control systems] ABB security advisory (AV26-664)

Serial number: AV26-664 Date: July 7, 2026 On July 6, 2026, ABB published a security advisory to address vulnerabilities in the following product: ABB Ability zenon – all versions APROL – versions prior to R 4.4-01P5 The Cyber Centre encourages users and administrators to review

unknowncccs2026-07-07

Broadcom VMware security advisory (AV26-663)

Serial number: AV26-633 Date: July 7, 2026 On July 6, 2026, Broadcom published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following: VMware Tanzu for MySQL on Kubernetes – versions prior to 2.0.4 The Cyber Centre en

criticalcccs2026-07-07

Android security advisory – July 2026 monthly rollup (AV26-662)

Serial number: AV26-662 Date: July 7, 2026 On July 6, 2026, Android published a security bulletin to address vulnerabilities affecting Android devices. The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates. Android Se

unknowncccs2026-07-07

Hitachi Energy e-mesh EMS

View CSAF Summary Hitachi Energy is aware of a buffer overflow vulnerability that affects e-mesh EMS product versions listed in this document. Successful exploitation of this vulnerability could lead to a buffer overflow condition, potentially resulting in application outages (de

criticalCVE-2026-42945cisa2026-07-07

Hitachi Energy PROMOD V

View CSAF Summary Hitachi Energy is aware of insecure HTTP transmission vulnerability in PROMOD V product versions listed in this document. This vulnerability could allow attackers to intercept or manipulate sensitive data in transit, potentially leading to credential theft, sess

criticalCVE-2026-10763cisa2026-07-07

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-48282 Adobe ColdFusion Path Traversal Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and

highexploitedpublic exploitCVE-2026-48282cisa2026-07-07

Labcenter Proteus 9

View CSAF Summary Successful exploitation of these vulnerabilities could disclose information and allow a malicious user to execute arbitrary code on affected installations. The following versions of Labcenter Proteus 9 are affected: Proteus 9.1_SP4_Build_42914 CVSS Vendor Equipm

Siemens SINEC OS

View CSAF Summary SINEC OS before V4.0 contains multiple vulnerabilities. Siemens has released a new version for RUGGEDCOM RST2428P and recommends to update to the latest version. The following versions of Siemens SINEC OS are affected: RUGGEDCOM RST2428P (6GK6242-6PA00) vers:int

Siemens Mendix Studio Pro

View CSAF Summary Mendix Studio Pro versions before V11.12 are affected by a file parsing vulnerability that could be triggered when the application reads specially crafted malicious project during the build pipeline. This could allow an attacker to execute arbitrary code in the

criticalCVE-2026-48192cisa2026-07-07
← NewerOlder →