CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Monday, August 24, 2026

CSIRT teams should prioritize CVE-2026-21962, an Oracle HTTP Server and Oracle WebLogic Server proxy plug-in improper access control vulnerability added to the KEV catalog today. Activity was notably heavy with 4,153 CVEs published and 206 CERT/PSIRT advisories issued, including critical Oracle and Red Hat patches and multiple Linux kernel updates spanning DoS and code execution flaws. Several critical vulnerabilities demand immediate attention: CVE-2026-78167 (EFM ipTIME router, CVSS 10.0), CVE-2026-78169 (UTT HiPER gateway, CVSS 9.9), CVE-2026-66897 (LXD container escape, CVSS 9.9), and multiple WordPress and DrayTek router flaws rated 9.8-9.9 affecting authentication and privilege escalation. Notable exploited vulnerabilities include issues in Metabase, Zimbra, and 389-ds-base that warrant rapid assessment across enterprise environments.

Last updated 03:17 UTC

CERT / PSIRT advisories
206
CVEs published
4153
Added to KEV
1
Known exploited
6

13 critical8 high1 medium2 unknownacross the day’s notable advisories and CVEs

Added to the KEV catalog

Exploitation observed in the wild — remediate first.

Notable advisories

Critical/high or exploited items from national CERTs and vendor PSIRTs.

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Highest exploitation probability

EPSS (FIRST.org) estimated probability of exploitation within 30 days, among CVEs published this day.

Where the day’s advisories came from

Curated CERT and PSIRT sources — these add up to the 206 above.

plus 332 CVE records from the NVD/GHSA firehose — not counted above

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.