● Daily security briefing
Friday, July 24, 2026
On July 24, 2026, security advisory activity included 199 advisories from various CERT and PSIRT sources, alongside the publication of 3,816 new CVEs. Notable advisories featured vulnerabilities in Check Point Security Management products, multiple vulnerabilities in the Linux Kernel, and issues in cPanel and CyberPanel. Critical CVEs of concern included CVE-2026-56163, which involves missing authentication in Microsoft Azure Kubernetes Service, and CVE-2026-58275, which allows unauthorized privilege escalation in Azure DNS. Other critical vulnerabilities were reported in Microsoft Exchange Online and Azure App Service, all rated with a CVSS score of 10.
12 critical11 high1 unknownacross the day’s notable advisories and CVEs
Notable advisories
Critical/high or exploited items from national CERTs and vendor PSIRTs.
- unknownexploitedncsc-nlNCSC-2026-0264 [1.00] [M/H] Vulnerabilities fixed in Check Point Security Management products
- highcert-bund[UPDATE] [high] Linux Kernel (Dirty Frag): Multiple vulnerabilities allow gaining administrator rights
- highcert-bund[NEW] [high] cPanel cPanel/WHM: Multiple vulnerabilities
- highcert-bund[NEW] [high] CyberPanel: Multiple vulnerabilities
- highubuntuUSN-8610-1: Linux kernel (Azure CVM) vulnerabilities
- highubuntuUSN-8575-3: Linux kernel vulnerabilities
- highcert-bund[UPDATE] [high] Linux Kernel: Multiple vulnerabilities
- highcert-bund[NEW] [high] JetBrains WebStorm: Multiple vulnerabilities allow code execution
- highubuntuUSN-8609-1: Linux kernel (Azure CVM) vulnerabilities
- highubuntuUSN-8608-1: Linux kernel (Azure FIPS) vulnerabilities
- highcert-bund[NEW] [high] JetBrains IntelliJ IDEA: Multiple vulnerabilities
- highcert-bund[NEW] [high] Google Chrome: Multiple vulnerabilities allow unspecified attack
Notable CVEs
Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.
- criticalCVE-2026-56163CVSS 10Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
- criticalCVSS 10GHSA-w28w-gp39-m4p6: Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer
- criticalCVE-2026-56191CVSS 10Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.
- criticalCVE-2026-58275CVSS 10Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network.
- criticalCVE-2026-57106CVSS 10Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.
- criticalCVE-2026-58630CVSS 10Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
- criticalCVSS 10GHSA-f25v-x6vr-962g: Pheditor: Authentication Bypass in Forced Password-Change Flow via Unverified Current Password
- criticalCVE-2026-62825CVSS 10Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network.
- criticalCVE-2026-54120CVSS 9.9Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.
- criticalCVE-2026-50517CVSS 9.9Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
- criticalCVE-2026-15704CVSS 9.8In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled deployments are vulnerable to an authorization bypass caused by inconsistent trailing-slash handling
- criticalCVSS 9.8GHSA-7gfh-x38p-prh3: Velocity.js: Remote Code Execution via property-read to Function constructor (bypass of GHSA-j658-c2gf-x6pq fix)
Highest exploitation probability
EPSS (FIRST.org) estimated probability of exploitation within 30 days, among CVEs published this day.
Where the day’s advisories came from
Curated CERT and PSIRT sources — these add up to the 199 above.