● On the wire
Ubuntu 26.04 Valkey Important TLS Denial of Service CVE-2026-56684//Debian Trixie DSA-6500-1 Tor Denial of Service Vulnerability Fix//Ubuntu 26.04 Bison Important Code Execution Threat USN-8777-1//Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities//Ubuntu 26.04 libheif Important Denial of Service USN-8774-1//AI Threat Landscape Digest: July–August 2026//Ubuntu 26.04 Bubblewrap Low Regression Issue USN-8779-2//Cisco Identity Services Engine Cross-Site Scripting Vulnerability//Debian libapache2-mod-auth-openidc Key Denial of Service Patch DSA-6504-1//ISC Stormcast For Friday, September 18th, 2026 https://isc.sans.edu/podcastdetail/10100, (Fri, Sep 18th)//Debian Unbound Critical Denial of Service Code Execution DSA-6507-1//Ubuntu 24.04 LTS Linux Nvidia Tegra Escalation Risks - Urgent Alert 8781-1//Ubuntu 24.04 Perl Important Denial of Service Vulnerabilities USN-8736-2//HTTP QUERY Method: The Grey Zone Between GET And POST., (Fri, Sep 18th)//Debian DSA-6505-1 BIND Critical Denial of Service and Cache Poisoning Fix//Ubuntu 26.04 Valkey Important TLS Denial of Service CVE-2026-56684//Debian Trixie DSA-6500-1 Tor Denial of Service Vulnerability Fix//Ubuntu 26.04 Bison Important Code Execution Threat USN-8777-1//Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities//Ubuntu 26.04 libheif Important Denial of Service USN-8774-1//AI Threat Landscape Digest: July–August 2026//Ubuntu 26.04 Bubblewrap Low Regression Issue USN-8779-2//Cisco Identity Services Engine Cross-Site Scripting Vulnerability//Debian libapache2-mod-auth-openidc Key Denial of Service Patch DSA-6504-1//ISC Stormcast For Friday, September 18th, 2026 https://isc.sans.edu/podcastdetail/10100, (Fri, Sep 18th)//Debian Unbound Critical Denial of Service Code Execution DSA-6507-1//Ubuntu 24.04 LTS Linux Nvidia Tegra Escalation Risks - Urgent Alert 8781-1//Ubuntu 24.04 Perl Important Denial of Service Vulnerabilities USN-8736-2//HTTP QUERY Method: The Grey Zone Between GET And POST., (Fri, Sep 18th)//Debian DSA-6505-1 BIND Critical Denial of Service and Cache Poisoning Fix//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news