Tuesday , September 8 2026

Vulnerabilities

Android update Patched 129 Vulns and Actively Exploited Zero-Day

129

Google has launched a major security update, fixing 129 vulnerabilities in the March 2026 Android Security Bulletin. This update is crucial due to reports that attackers are exploiting a high-severity flaw. The centerpiece of this month’s alert is CVE-2026-21385, a high-severity memory corruption vulnerability affecting a Qualcomm display component. Google …

Read More »

Trend Micro alerts of critical Apex One code execution flaws

Apex One

Trend Micro fixed two serious vulnerabilities in Apex One that let attackers execute remote code on affected Windows systems. Apex One is an endpoint security platform that identifies and addresses security threats like malware, spyware, and vulnerabilities. The first critical Apex One security flaw patched this week (CVE-2025-71210) is due to …

Read More »

ALERT
Critical Cisco SD-WAN 0-Day Exploited since 2023

SD-WAN

Cisco has issued urgent updates to fix a critical zero-day (CVE-2026-20127) vulnerability in its Catalyst SD-WAN products. A sophisticated threat actor named UAT-8616 is exploiting this flaw to gain deep access to enterprise networks. An unauthenticated remote attacker can exploit this weakness by sending specific requests to a vulnerable system. …

Read More »

(CVE-2026-22719, CVE-2026-22720 and CVE-2026-22721)
VMware Aria Operations updates address multiple vulnerabilities

VMware Aria Operations

Broadcom published security advisory VMSA-2026-0001 on February 24, 2026, revealing three vulnerabilities in VMware Aria Operations that may enable attackers to run unauthorized commands remotely. VMware Aria Operations, VMware Cloud Foundation, VMware Telco Cloud Platform, and VMware Telco Cloud Infrastructure have flaws, but patches are now available for all affected …

Read More »

Microsoft admits
Copilot reads ‘confidential emails’ bypassing DLP policies

Copilot

Microsoft has admitted that a coding bug accidentally allowed Copilot Chat to access and summarize confidential emails. Microsoft said that a bug in Microsoft 365 Copilot allowed the AI assistant to access private emails, raising serious privacy issues for companies using the service. Bleeping Computer reports, the flaw bypasses data loss …

Read More »

CISA warns feds to fix Dell flaw within 3 days

Dell flaw

CISA has ordered government agencies to fix a serious Dell flaw within three days, which has been actively exploited since mid-2024. Mandiant and the Google Threat Intelligence Group report that a vulnerability (CVE-2026-22769) involving hardcoded credentials in Dell’s RecoverPoint is being exploited by a suspected Chinese hacking group named UNC6201. …

Read More »

Microsoft fixes 6 zero-days, 58 flaws in February 2026 Patch Tuesday

2026 Patch Tuesday

Today is Microsoft’s February 2026 Patch Tuesday, featuring security updates for 58 flaws, including 6 that are actively exploited and 3 publicly disclosed zero-day vulnerabilities. This Patch Tuesday fixes five “Critical” vulnerabilities: three elevate privileges and two disclose information. The details of vulnerabilities by category are as follows: 25 Elevation …

Read More »

ALERT
FortiClientEMS Vuln Let Attackers Execute Malicious Code Remotely

Bishop Fox

Fortinet has released a critical security advisory urging administrators to promptly update FortiClientEMS, its central management tool for endpoint protection. A vulnerability, CVE-2026-21643, has a CVSSv3 score of 9.1 and may enable remote attackers to run unauthorized code on affected servers. The flaw is categorized as an SQL Injection (SQLi) …

Read More »

CISA Flags Actively Exploited SolarWinds RCE Flaw to KEV 

SolarWinds

CISA announced on Tuesday that a security flaw in SolarWinds Web Help Desk is now listed in its Known Exploited Vulnerabilities catalog, indicating it is actively being targeted in attacks. The vulnerability, CVE-2025-40551 (CVSS score: 9.8), allows untrusted data deserialization that could enable remote code execution. Web Help Desk is …

Read More »