Seinwacht

Meldingen

67 meldingen uit primaire bronnen. Filter op ernst, type of vendor, of zoek op een CVE-nummer of productnaam. Bulkpublicaties (BSI-updates, Patch Tuesday) staan als één regel.

Ernst
Type
Soort bron
Vendor
Sorteren
Wissen

Koppelen

RSS-feed met deze filtersDownload als CSV

Zet de feed in je RSS-lezer, of in Slack (/feed subscribe) of Teams (RSS-connector), dan komen nieuwe meldingen vanzelf in je teamkanaal.

Liever zelf bouwen? Dezelfde selectie als JSON, of de volledige API-specificatie (OpenAPI).

  • CVE-2026-83549: SonicWall SMA1000 Appliances OS Command Injection Vulnerability

    CISA Known Exploited VulnerabilitiesKEV

    SonicWall SMA1000 Appliances contains an OS command injection vulnerability that could enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s

    Actief misbruiktCVSS 7,8EPSS 11%CVE-2026-83549SonicWall
    58hoog
  • CVE-2026-83548: SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability

    CISA Known Exploited VulnerabilitiesKEV

    SonicWall SMA1000 Appliances contains a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to gain unauthorized access to sensitive functionality and perform unauthorized operations. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance

    Actief misbruiktCVSS 10,0EPSS 9%CVE-2026-83548SonicWall
    55hoog
  • CVE-2026-9586: Sangoma Switchvox SQL Injection Vulnerability

    CISA Known Exploited VulnerabilitiesKEV

    Sangoma Switchvox contains a SQL injection vulnerability which allows an unauthenticated remote attacker to execute arbitrary SQL statements against the backend PostgreSQL database using a single crafted request, including database operations and remote code execution. Vereiste actie: Apply mitigations in accordance w

    Actief misbruiktCVSS 9,3EPSS 19%CVE-2026-9586PostgreSQLSangoma
    65hoog
  • CVE-2026-82329: JFrog Artifactory Improper Authentication Vulnerability

    CISA Known Exploited VulnerabilitiesKEV

    JFrog Artifactory contains an improper authentication vulnerability that under default configuration can allow an unauthenticated attacker with network access to obtain administrative privileges. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Priori

    Actief misbruiktCVSS 9,8EPSS 14%CVE-2026-82329JFrog
    65hoog
  • CVE-2026-49869: Kestra OSS OS Command Injection Vulnerability

    CISA Known Exploited VulnerabilitiesKEV

    Kestra OSS contains an OS command injection vulnerability that could allow an unauthenticated remote attacker to create and execute arbitrary workflows without credentials. Vereiste actie: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates

    Actief misbruiktCVSS 10,0EPSS 2%CVE-2026-49869Kestra
    55hoog
  • Kwetsbaarheden in PaperCut MF en NG met actief misbruik: update onmiddellijk

    NCSC-NL Nieuws & alertsBericht

    Er zijn twee actief misbruikte kwetsbaarheden aangetroffen in PaperCut MF en PaperCut NG, bekend als CVE-2026-82078 en CVE-2026-81578. Deze kwetsbaarheden worden beoordeeld met een kans op misbruik van medium en een hoge kans op schade. Omdat er al actief misbruik is van deze kwetsbaarheden, is het belangrijk om snel a

    Actief misbruiktCVSS 9,4EPSS 85%CVE-2026-81578CVE-2026-82078
    80kritiek
  • Meerdere kwetsbaarheden in Adobe Commerce: update onmiddellijk

    NCSC-NL Nieuws & alertsBericht

    Er zijn meerdere kwetsbaarheden gevonden in Adobe Commerce. Onder de kwetsbaarheden is er één met een CVSS-score van 9.1. Deze heeft het kenmerk CVE-2026-71362. Er is momenteel geen melding van actief misbruik, maar misbruik zou onder andere kunnen leiden tot: het lekken van klant- en bedrijfsgegevens en verstoring van

    Actief misbruiktCVSS 9,1EPSS 88%CVE-2026-71362Adobe
    80kritiek