CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Friday, August 21, 2026

CSIRT teams face a significant advisory load today with 188 CERT/PSIRT advisories and 3,716 CVEs published. The day's most critical threat is CVE-2026-73570, a Zimbra Collaboration Suite OS command injection vulnerability added to CISA's Known Exploited Vulnerabilities catalog, with active exploitation already confirmed in the wild. Multiple critical vulnerabilities were disclosed across infrastructure software including several CVSS 10.0 remote code execution flaws in Xinference and Azure SQL Database, plus five critical Incus container manager vulnerabilities (CVSS 9.9) affecting versions prior to 7.3.0. Additional notable advisories include updates to Linux Kernel vulnerabilities enabling denial of service attacks, new vulnerabilities in Apache CloudStack and PTC Windchill/FlexPLM, and a Cisco Crosswork Security Hardening release addressing multiple issues.

Last updated 03:11 UTC

CERT / PSIRT advisories
188
CVEs published
3716
Added to KEV
1
Known exploited
5

13 critical8 high1 medium2 unknownacross the day’s notable advisories and CVEs

Added to the KEV catalog

Exploitation observed in the wild — remediate first.

Notable advisories

Critical/high or exploited items from national CERTs and vendor PSIRTs.

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Where the day’s advisories came from

Curated CERT and PSIRT sources — these add up to the 188 above.

plus 311 CVE records from the NVD/GHSA firehose — not counted above

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.