Advisories

Critical Check Point Security Management Vulnerabilities Under Active Exploitation (CVE-2026-16232, CVE-2026-62144, CVE-2026-62145)

Check Point patched three vulnerabilities in its Security Management platform on July 22nd, 2026, (CVE-2026-16232, CVE-2026-62144, CVE-2026-62145). CVE-2026-16232 was already exploited in the wild as to seize full administrative control of firewall management servers.

Jul 22, 2026 - 3 Min Read

Critical Vulnerability in Palo Alto Global Protect Under Active Exploitation (CVE-2026-0257)

A flaw can allow an unauthenticated attacker to establish unauthorized VPN sessions on vulnerable GlobalProtect deployments when certain configuration conditions are present, currently added to KEV and is being used by Qilin Ransomware affiliates.

Jul 21, 2026 - 4 Min Read

"WP2Shell" Critical WordPress RCE Chain (CVE-2026-63030 & CVE-2026-60137)

On July 17th, WordPress disclosed two separate vulnerabilities which when chained together, could enable a remote unauthenticated attacker to achieve Remote Code Execution on default installations of the WordPress “core” product.

Jul 17, 2026 - 3 Min Read

Critical Memory Corruption Vulnerabilities in NGINX (CVE-2026-42533, CVE-2026-56434, CVE-2026-60005)

F5 has patched three memory-corruption vulnerabilities in NGINX Plus and NGINX Open Source, the most severe of which lets an unauthenticated attacker crash worker processes and, under the right conditions, execute code.

Jul 15, 2026 - 4 Min Read

Critical Vulnerability in Oracle EBS Payments Product Under Active Exploitation (CVE-2026-46817)

On July 15th, 2026, CISA added a critical flaw in Oracle E-Business Suite's Payments module to its Known Exploited Vulnerabilities (KEV) catalog, confirming active exploitation of the vulnerability in the wild.

Jul 15, 2026 - 3 Min Read

SharePoint Vulnerabilities Under Active Exploitation, CISA Urges SharePoint Hardening

(CVE-2026-55040, CVE-2026-58644, CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, CVE-2026-50522)

Jul 14, 2026 - 6 Min Read

Critical Vulnerability in SonicWall SMA1000 Appliances Under Active Exploitation (CVE-2026-15409)

On July 14th, 2026, SonicWall PSIRT disclosed a critical vulnerability affecting SMA1000 secure remote access appliances. Tracked as CVE-2026-15409, SonicWall confirmed this vulnerability is being actively exploited in the wild and CISA has added it to its Known Exploited Vulnerabilities (KEV) catalog.

Jul 14, 2026 - 3 Min Read

Emerging Threat: Progress Customers Instructed to Shut Down Storage Zone Controllers

Progress Software issued an emergency communication via email to customers, urging immediate server shutdown citing a “credible external security threat targeting Progress Software’s ShareFile Storage Zone Controllers.”

Jul 10, 2026 - 4 Min Read

Vulnerabilities Found in Page Builder CK (CVE-2026-48908) and SP Page Builder (CVE-2026-56290)

Critical vulnerabilities have been found in two Joomla plugins, leading to maximum severity CVE-2026-56290 and CVE-2026-48908, both already added to CISA's KEV catalog.

Jul 8, 2026 - 5 Min Read

Critical Vulnerabilities in BeyondTrust Remote Support and Privileged Remote Access (CVE-2026-40138, CVE-2026-40139)

Two pre-authentication flaws CVE-2026-40138 and CVE-2026-40139 disclosed in BeyondTrust Remote Support and Privileged Remote Access let attackers bypass authentication and reach the appliance, including privileged accounts, when a specific authentication configuration is enabled.

Jul 7, 2026 - 2 Min Read