CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Wednesday, July 22, 2026

On July 22, 2026, security advisory activity was notably active, with 272 advisories and 3,013 CVEs published. Significant additions to the Known Exploited Vulnerabilities (KEV) catalog include CVE-2026-50522, a deserialization vulnerability in Microsoft SharePoint, and CVE-2026-16232, an improper authentication vulnerability in Check Point SmartConsole. Critical advisories were issued for vulnerabilities in Check Point, Mitel, SolarWinds, and Oracle, with multiple critical vulnerabilities identified in Oracle's Platform Security for Java. Additionally, several high-profile CVEs were reported, including CVE-2026-60366 and CVE-2026-60369, both critical vulnerabilities in Oracle Fusion Middleware.

Last updated 03:45 UTC

CERT / PSIRT advisories
272
CVEs published
3013
Added to KEV
2
Known exploited
4

16 critical7 high1 unknownacross the day’s notable advisories and CVEs

Added to the KEV catalog

Exploitation observed in the wild — remediate first.

Notable advisories

Critical/high or exploited items from national CERTs and vendor PSIRTs.

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Highest exploitation probability

EPSS (FIRST.org) estimated probability of exploitation within 30 days, among CVEs published this day.

Where the day’s advisories came from

Curated CERT and PSIRT sources — these add up to the 272 above.

plus 301 CVE records from the NVD/GHSA firehose — not counted above

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.