Sophos has fixed three separate security vulnerabilities in Sophos Firewall. The vulnerabilities CVE-2024-12727, CVE-2024-12728, and CVE-2024-12729 present major risks, such as remote code execution and privilege escalation.
Microsoft has fixed critical vulnerabilities in its core cloud services, including Azure Automation, Azure Storage, Azure DevOps, and Microsoft Power...
Attackers linked to the Play ransomware operation deployed a zero-day privilege escalation exploit during an attempted attack against an organization...
Google has released its monthly Android security updates, addressing 46 vulnerabilities, including one that has been actively exploited. CVE-2025-27363 (CVSS...
Applies to the following Sophos product(s) and version(s):
Sophos Firewall v21.0 GA and earlier
Source: Sophos
No action is needed for Sophos Firewall customers who have the “Allow automatic installation of hotfixes” feature enabled in the remediated versions. This setting is enabled by default.
Sophos has not seen these vulnerabilities exploited yet at this time.