home.social

#advisory — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #advisory, aggregated by home.social.

fetched live
  1. Atlassian Patches 172 Vulnerabilities Across Data Center and Server Products

    Atlassian released its August 2026 security bulletin addressing 172 vulnerabilities, including 10 critical flaws in third-party dependencies that allow remote code execution and system compromise.

    **If you run Atlassian Data Center or Server products (Bamboo, Bitbucket, Confluence, Crowd, Fisheye/Crucible, Jira, or Jira Service Management), update them now to the fixed versions. Prioritize Jira, Jira Service Management and Confluence, then the rest. Until you can patch, keep these systems off the public internet and reachable only from trusted networks.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  2. Elementor Pro Logic Flaw Allows Unauthenticated Remote Code Execution

    Elementor Pro versions before 4.2.2 contain a critical logic flaw in the file upload module that allows unauthenticated attackers to bypass extension filters and execute arbitrary PHP code.

    **If you use Elementor Pro and have any form with a File Upload field, update the plugin to version 4.2.2 or later immediately. Then manually check the `wp-content/uploads/elementor/forms/` folder on your server and delete any `.php` files you find there, because the update does not remove anything an attacker may have already uploaded.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  3. Cisco Patches Eight Critical Vulnerabilities in Crosswork and Secure Workload

    Cisco released patches for eight critical flaws in Crosswork and Secure Workload that allow remote code execution and authentication bypass.

    **If you run Cisco Crosswork or Secure Workload, update immediately to Crosswork 7.2.1-SP and Secure Workload 4.0.4.16 or 3.10.9.1. There are no workarounds, and several of these flaws let attackers in with no login at all. Until you've patched, keep these management platforms isolated from the internet and reachable only from trusted internal networks.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  4. Citrix Patches Critical Authentication Bypass in NetScaler ADC and Gateway

    Citrix patched two vulnerabilities in NetScaler ADC and Gateway, including an authentication bypass and a memory overflow. These flaws allow unauthenticated attackers to gain unauthorized access or cause a denial of service on perimeter networking equipment.

    **If you run NetScaler ADC or Gateway, update ASAP to 14.1-73.32, 13.1-63.21, or the matching FIPS/NDcPP build, especially if you use Gateway/AAA virtual servers with SAML, or SIP ALG on an LSN group. Since these appliances sit on the network edge and are actively targeted, treat this as an urgent patch.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  5. BitBox Patches Firmware Flaws

    BitBox released the Dixence update to fix three firmware vulnerabilities, including a bootloader flaw and memory corruption, that could allow attackers to steal funds or execute code.

    **If you own a BitBox02 or BitBox02 Nova hardware wallet, update it to firmware 9.26.5 right away using only the official BitBoxApp downloaded from bitbox.swiss, and verify the app's signature before installing. Never enter your recovery words into any computer or phone, and if you used Silent Payments recently, double-check your funds arrived at the right address before sending more.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  6. Oracle Releases Massive August 2026 Security Update Fixing 943 Vulnerabilities

    Oracle's August 2026 update patches 943 vulnerabilities, including critical remote code execution flaws in WebLogic and E-Business Suite that allow unauthenticated attackers to take over systems.

    **If you are using Oracle products, review this advisory in detail. Prioritize patching of internet-facing systems, as more than 650 vulnerabilities allow remote attackers to compromise your systems without any authentication. Patch Oracle Fusion Middleware first: it accounts for nine of the flaws scored CVSS 10.0 and 219 network-accessible vulnerabilities requiring no credentials. Oracle Communications should follow, where 122 of 168 patches address unauthenticated remote issues.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  7. Unauthenticated RCE Vulnerability Patched in Forminator Forms Plugin

    WPMU DEV patched a critical vulnerability (CVE-2026-15748) in the Forminator Forms plugin that allowed unauthenticated attackers to upload and execute PHP files. The flaw can lead to full remote code execution and site compromise.

    **If you use the Forminator Forms plugin on your WordPress site, update it to version 1.56.2 or later ASAP away: attackers can take over the whole site without logging in. After updating, check your upload folders for any unfamiliar PHP files. If you can't update yet, delete any forms that use both File Upload and Select fields.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  8. GitLab Issues Emergency Patch for Critical GraphQL Flaw Allowing Remote Project Deletion

    GitLab issued an emergency security update to fix a critical GraphQL code injection vulnerability (CVE-2026-19478) that allows unauthenticated attackers to remotely delete or modify public projects and user data.

    **If you run a self-managed GitLab server (version 18.2 through 19.2.3), update it ASAP to 19.2.4, 19.1.6, 19.0.8, or 18.11.11. The patch is quick and won't take your system offline. Before you patch, check your logs for unusual GraphQL activity so you know nobody has already deleted or altered your projects or user data.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  9. Critical Authentication Bypass Reported in User Profile Builder

    Cozmoslabs patched a critical authentication bypass vulnerability (CVE-2026-15826) in the User Profile Builder WordPress plugin that allowed unauthenticated attackers to gain full administrative control.

    **If you run the User Profile Builder plugin on WordPress, update it to version 3.16.5 or later ASAP. If you can't update immediately, turn off the "Automatically Log In after Registration" setting in the plugin options, and check whether your admin account is user ID 1 and if possible switch to a different admin account.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  10. Researcher Reports That AMD Family 16h Processors Vulnerable to Platform Unlock via DRAM Scrambling

    Security researcher Christopher Domas revealed a critical hardware vulnerability in AMD Family 16h processors that allows attackers to bypass all platform security boundaries by manipulating DRAM controller address translations.

    **If you run AMD Family 16h processors, be aware of this hardware architectural flaw. There is no patch for this flaw and no way to lock the affected registers, so your only real defence is stopping untrusted code and people from reaching the machine: enforce physical security, restrict local and administrator access to a small trusted group, and use strict application whitelisting. For systems holding sensitive secrets (fTPM keys, security-critical workloads), plan to migrate them onto newer hardware.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  11. Siemens Patches Critical RCE Flaws in Industrial IoT, Networking and Video Management Systems

    Siemens addressed multiple critical vulnerabilities, including a CVSS 10.0 flaw in SIMATIC IoT2050 devices and a CVSS 9.1 flaw in Siveillance Video Management Servers.

    **If you run Siemens SIMATIC IoT2050, Siveillance Video Management Servers, or RUGGEDCOM APE1808, first make sure these devices are isolated from the internet and reachable only from trusted networks. Then update each one to the latest Siemens version right away - especially the IoT2050 with Node-RED, where anyone on the network can currently take full control without a password.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  12. Phoenix Contact Patches Critical Buffer Overflow in PLCnext Firmware

    Phoenix Contact addressed three vulnerabilities in PLCnext firmware, including a critical buffer overflow (CVE-2025-41769) that allows unauthenticated remote code execution. The update also fixes denial-of-service and SQL injection flaws affecting various industrial controllers.

    **If you run Phoenix Contact PLCnext controllers, first make sure these devices are isolated from the internet and reachable only from trusted networks. Then update the firmware to version 2026.0.3 on every compatible device. For the obsolete EPC 1502 and EPC 1522, which will never be patched, take them off the network or replace them with supported hardware.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  13. Quanovate Tech Patches Critical Vulnerabilities in Mira Hormone Monitor and Android App

    Quanovate Tech patched eight vulnerabilities in the Mira Hormone Monitor and Android app that allowed attackers to take over accounts and manipulate sensitive reproductive health data. The flaws included weak cloud authentication and hard-coded credentials that could lead to failed fertility treatments or data theft.

    **If you use the Mira Hormone Monitor, immediately update the app to iOS v3.5.18 or Android v4.5.18 and let the firmware update to 01.07.01.53 install when the device connects, and keep Bluetooth off when you aren't actively using the monitor.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  14. Cisco Reports High-Severity ClamAV Flaws Affecting Secure Endpoint

    Cisco reports seven high-severity vulnerabilities in the ClamAV engine that allow unauthenticated attackers to cause denial-of-service conditions. The flaws affect various file parsers and have public exploit code available for ZIP-related vulnerabilities.

    **If you run ClamAV or the Cisco Secure Endpoint Connector on Windows, Linux, or Mac, update ClamAV to version 1.5.4 now and watch the Cisco Secure Endpoint portal for the Connector updates coming later in August 2026. Until you have patched, keep an eye out for the antivirus service unexpectedly stopping. That may be a sign of an attack, and any machine in that state is unprotected and should be checked for other malware.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  15. Microsoft Patches 421 Vulnerabilities in August 2026 Update Including Actively Exploited Zero-Day

    Microsoft's August 2026 Patch Tuesday addresses 421 vulnerabilities, including 62 critical flaws and one actively exploited zero-day in the Windows Ancillary Function Driver. The update covers a most products from Azure and Office to Windows Server components like DNS and DHCP.

    **Patch the Windows OS first for the AFD.sys zero-day first, it is already being used by North Korean state actors to load a kernel rootkit. Then move through Office, Word, and Excel, followed by SharePoint Server and Exchange. Windows DNS and DHCP servers should be next, as they carry critical remotely reachable RCE flaws. Everything else can follow in the normal cycle.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  16. Zoom Patches Critical "Zoomsday" Zero-Click Vulnerabilities

    Zoom patched three vulnerabilities in its annotation feature, including a zero-click remote code execution flaw that allows attackers to take full control of devices during meetings.

    **Zoom (Workplace, VDI, Rooms, and the Meeting SDK) to the latest version right away on every device: Windows, Mac, Linux, iOS and Android because an attacker in your meeting can take over your machine with no clicks from you. Until everyone is patched, turn off the annotation feature if you don't need it and set a minimum client version for joining meetings. Be aware that Zoom's server-side protections do not cover end-to-end encrypted meetings.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  17. SAP August 2026 Patch Day Fixes Critical Code Injection and Memory Corruption Flaws

    SAP's August 2026 Security Patch Day addresses 31 vulnerabilities, including a critical CVSS 10.0 authentication bypass in Commerce Cloud and code injection flaws in Manufacturing Integration and Intelligence. These vulnerabilities allow remote attackers to execute arbitrary commands and gain unauthorized access to internal enterprise systems.

    **If you run SAP products, especially Manufacturing Integration and Intelligence (MII) read the advisory in detail. First make sure these systems are isolated from the internet where possible and reachable only from trusted internal networks. Then apply SAP's August 2026 security notes ASAP starting with the critical fixes for Commerce Cloud (CVE-2026-58231) and MII (CVE-2026-44772, CVE-2026-44758), followed by the ABAP Platform patch (CVE-2026-34265).**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  18. Adobe releases August 2026 patches for multiple products

    Adobe's August 2026 security updates patch dozens of vulnerabilities in ColdFusion, Campaign Classic, Commerce/Magento Open Source, Lightroom Classic, and the Content Credentials SDK, including several CVSS 10.0 flaws (OS command injection in ColdFusion and incorrect authorization in Campaign Classic) that enable arbitrary code execution.

    **If you use any Adobe products, prioritize updating ColdFusion and Adobe Campaign Classic immediately, as both received Adobe's highest priority rating and contain critical vulnerabilities sthat could lead to arbitrary code execution without authentication or user interaction. Next, update Adobe Commerce and Magento Open Source. Then update Adobe Lightroom Classic and the Content Credentials SDK components. If you can't update right away, consider restricting network access to ColdFusion, Campaign Classic, and Commerce servers, and avoid opening untrusted files in Lightroom Classic until patches are applied.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  19. SCTPhantom: 18-Year-Old Linux Kernel Flaw Allows Root Access and Container Escape

    A use-after-free vulnerability in the Linux SCTP implementation (CVE-2026-64564) allows local attackers to gain root privileges and escape containers. The flaw has existed since 2008 and affects most major Linux distributions.

    **If you run Linux (Debian, Ubuntu, RHEL, Rocky) on servers, containers or workstations, install the latest kernel update from your distribution vendor and reboot. The fix for CVE-2026-64564 only takes effect after the restart. If you don't use SCTP, also switch the module off (add both blacklist sctp and install sctp /bin/false to /etc/modprobe.d/sctp.conf, refresh the initramfs, and confirm with lsmod | grep sctp that nothing comes back).**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  20. Microsoft Patches Multiple Critical Remote Code Execution and Privilege Escalation Flaws

    Microsoft patched 20 vulnerabilities, including three CVSS 10.0 flaws in Teams, Azure SQL, and Planetary Computer Pro that allow remote elevation of privilege. The updates also fix critical remote code execution bugs in Azure Service Bus.

    **Most of these were fixed by Microsoft on their own cloud infrastructure, so there's nothing for you to patch. Instead, use this advisory as a prompt to check your own tenant: list which Azure, Entra, Teams, SharePoint Online and Power Apps services you actually use, review who has admin and privileged roles, and tighten guest and anonymous access.
    Have your team review logs for sign-ins from unfamiliar locations, failed access attempts, and unexpected role or directory changes over the past weeks. Treat anything unusual as worth investigating (not proof of a breach), and confirm your exact exposure directly with Microsoft's MSRC advisories.**
    #cybersecurity #infosec #advisory #databreach
    beyondmachines.net/event_detai

  21. Google Patches 41 Critical and High-Severity Vulnerabilities in Chrome 151 Update

    Google released a Chrome 151 security update, bringing the Stable channel to version 151.0.7922.108/.109 for Windows and macOS and 151.0.7922.108 for Linux. The update addresses 41 vulnerabilities, including six critical memory-safety flaws affecting WebGL, Skia, ANGLE, Aura, and Views.

    **Update Google Chrome to version 151.0.7922.108/.109 on Windows and macOS or version 151.0.7922.108 on Linux. Users of Microsoft Edge, Brave, Opera, Vivaldi, and other Chromium-based browsers should install corresponding security updates when released by their vendors.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  22. Veeam ONE Patches Critical Remote Code Execution and SQL Injection Flaws

    Veeam ONE version 13 contains six vulnerabilities, including a CVSS 10.0 critical remote code execution flaw and a high-severity SQL injection bug. These vulnerabilities allow unauthenticated attackers to take over agent hosts, read arbitrary files, and extract sensitive database information.

    **If you run Veeam ONE version 13, update it to build 13.1.0.7034. One of these flaws (CVE-2026-64633) lets an attacker take over the system remotely without any login or clicks from you. While you're at it, make sure Veeam ONE is only reachable from your trusted admin network, not from the internet or the general user network.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai

  23. Paperclip Patches Critical RCE Vulnerabilities in AI Orchestration Platform

    Paperclip patched three critical vulnerabilities, including a CVSS 10.0 RCE flaw, that allow attackers to take over AI agent servers and local development machines. The flaws exploit authorization mismatches in company imports and missing authentication on API endpoints.

    **If you run Paperclip, upgrade it to version 2026.416.0 or later ASAP, keep the management interface off the internet and reachable only from trusted networks, and turn off open self-registration. If any instance was exposed before you patched, assume it was attacked: review imported company configurations, rotate every password, key and token the server could reach, and check connected systems for suspicious activity.**
    #cybersecurity #infosec #advisory #vulnerability
    beyondmachines.net/event_detai