Week 31, 2026 — Jul 27 – Aug 2, 2026
Everything the 24 aggregated CERT, PSIRT and vulnerability-database feeds published in this ISO week, condensed: what was added to the CISA KEV catalog, which advisories matter most and which products were hit. Daily detail lives in the daily briefings.
Added to the CISA KEV catalog
- criticalCVE-2026-20316added 2026-07-29 · CVSS 5.3
- criticalCVE-2026-16812added 2026-07-27 · CVSS 10
- criticalCVE-2025-68686added 2026-07-27
Notable advisories
CVE-2026-16812: Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability
CVE-2025-68686: Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
CISA Adds One Known Exploited Vulnerability to Catalog
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Security Alert: [Updated] Microsoft Releases July 2026 Security Updates
Cisco security advisory (AV26-757)
NCSC-2026-0271 [1.00] [M/H] Vulnerability fixed in Cisco Secure Firewall Management Center
Cisco Secure Firewall Management Center Software Information Disclosure Vulnerability
Vulnerability in Cisco Firewall Management Center (July 30, 2026)
Arista Networks security advisory (AV26-751)
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP
Most-affected products
Volume by source
Other weeks
Don't wait a week. The daily briefing lands in your inbox every morning after 06:00 UTC — subscribe free, or watch specific products for instant advisory alerts.