CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

Veeam security advisory (AV26-694)

critical
Serial number: AV26-694 Date: July 14, 2026 On July 14, 2026, Veeam published a security advisor to address a critical vulnerability in the following product: Veeam Software Appliance Updater Component – versions prior to 12.3.0.65 The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates. Veeam Software Appliance - Updater Component Vulnerability Veeam Knowledge Base

CSIRTS triage

What
A critical vulnerability exists in the Veeam Software Appliance Updater Component.
Who is affected
Users of Veeam Software Appliance versions prior to 12.3.0.65.
Urgency
Remediation is critical as the vulnerability is classified as critical, though not currently exploited.
Action
Update to version 12.3.0.65 or later.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Software Appliance Updater Component

Get an email when a new Software Appliance Updater Component advisory drops — max one per day, one-click unsubscribe.

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
critical
Published
2026-07-14
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/veeam-security-advisory-av26-694

More from Canadian Centre for Cyber Security