● Daily security briefing
Wednesday, July 22, 2026
On July 22, 2026, security advisory activity was notably active, with 272 advisories and 3,013 CVEs published. Significant additions to the Known Exploited Vulnerabilities (KEV) catalog include CVE-2026-50522, a deserialization vulnerability in Microsoft SharePoint, and CVE-2026-16232, an improper authentication vulnerability in Check Point SmartConsole. Critical advisories were issued for vulnerabilities in Check Point, Mitel, SolarWinds, and Oracle, with multiple critical vulnerabilities identified in Oracle's Platform Security for Java. Additionally, several high-profile CVEs were reported, including CVE-2026-60366 and CVE-2026-60369, both critical vulnerabilities in Oracle Fusion Middleware.
16 critical7 high1 unknownacross the day’s notable advisories and CVEs
Added to the KEV catalog
Exploitation observed in the wild — remediate first.
Notable advisories
Critical/high or exploited items from national CERTs and vendor PSIRTs.
- highexploitedcisaCISA Adds Two Known Exploited Vulnerabilities to Catalog
- criticalexploitedcccsCheck Point security advisory (AV26-735)
- unknownexploitedcert-fr-alerteMultiple vulnerabilities in Microsoft Sharepoint (July 22, 2026)
- criticalcccsMitel security advisory (AV26-734)
- criticalcccsSolarWinds security advisory (AV26-728)
- criticalcert-bund[UPDATE] [critical] GNU libc: Multiple vulnerabilities
- criticalcccsOracle security advisory – July 2026 quarterly rollup (AV26-729)
- highcert-bund[NEW] [high] Budibase: Multiple Vulnerabilities
- highcert-bund[NEW] [high] Aruba AOS-CX: Multiple Vulnerabilities
- highcert-bund[NEW] [high] Red Hat Enterprise Linux (pacemaker): Vulnerability allows Denial of Service
- highcert-bund[NEW] [high] Red Hat Enterprise Linux (plexus-utils): Vulnerability allows execution of arbitrary code with user privileges
- criticalcccsAtlassian security advisory (AV26-731)
Notable CVEs
Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.
- criticalexploitedCVE-2026-16232CVSS 9.1An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to au
- criticalCVE-2026-60366CVSS 10Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
- criticalCVE-2026-60369CVSS 9.9Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
- criticalCVE-2026-60367CVSS 9.8Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
- criticalCVE-2026-2395CVSS 9.8Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Code Platform allows SQL Injectio
- criticalCVE-2026-16606CVSS 9.8A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote code execution (pre-auth RCE) o
- criticalCVE-2026-60372CVSS 9.8Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
- criticalCVE-2026-40712CVSS 9.1Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access cou
- criticalCVE-2026-62144CVSS 9.1An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative c
- criticalCVE-2026-46738CVSS 9.1Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access cou
- highCVE-2026-60455CVSS 8.8Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
- highCVE-2026-61246CVSS 8.8Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versions that are affected are 12.2.
Highest exploitation probability
EPSS (FIRST.org) estimated probability of exploitation within 30 days, among CVEs published this day.
Where the day’s advisories came from
Curated CERT and PSIRT sources — these add up to the 272 above.