Patch Management
13 articles
Advertisement
Articles13
CISA Added Seven Exploited Flaws. Five Due in Three Days, Two in Fourteen.
Five carry a three-day federal clock, two carry fourteen days, in a single batch. Three of the seven sit in AI...
PR
4 Sep
SonicWall SMA1000's July Fix Is the Build This Advisory Now Calls Vulnerable
Two new zero-days are being chained on SMA1000 appliances, in the same two components as the June pair. The Ju...
KE
3 Sep
PaperCut's First Emergency Patch Was Bypassable. Here Is the Second One.
PaperCut has shipped a second emergency patch after researchers walked around the first. A vendor under active...
PR
1 Sep
Microsoft Fixed 421 Flaws. Or 400. Only One Is Being Exploited.
Three different totals are circulating for the same Patch Tuesday, and all are defensible. The one number that...
CY
11 Aug
Three Days to Patch. CISA's Deadline Used to Be Three Weeks.
Every vulnerability CISA catalogued in the first week of August carried a three-day federal deadline. We measu...
KE
11 Aug
MIT Broke Spectre v2 Defences. AMD Will Patch, Intel Will Not.
MIT researchers showed that Spectre v2 mitigations can be stepped around on current Intel and AMD processors,...
CY
9 Aug
N-able's Patch Did Not Hold. The Second Hotfix Came Four Days Later.
N-able patched a critical authentication bypass in N-central, attackers found a path the patch did not block,...
CY
8 Aug
Three Days to Patch N-able. A Year Ago 92% of KEV Entries Got Three Weeks
CISA gave three days to fix an actively exploited N-able bypass. Across the catalogue, the three-week remediat...
CY
4 Aug
Joomla JCE Flaw CVE-2026-48907 (CVSS 10.0) Is Being Actively Exploited — Patch and Check for Compromise
CISA added CVE-2026-48907, a maximum-severity flaw in the Widget Factory Joomla Content Editor extension (JCE...
CY
19 Jun
Palo Alto GlobalProtect Flaw CVE-2026-0257 Is Under Active Exploitation — Patch or Mitigate Now
Palo Alto Networks has confirmed active exploitation of CVE-2026-0257, an authentication-bypass flaw in PAN-OS...
CY
19 Jun
CERT-In Orders 12-Hour Patching Window as AI Shrinks Exploit Timelines to Hours
India's national cybersecurity agency has told organisations running internet-facing systems to patch, mitigat...
KE
1 Jun
Microsoft Exchange OWA Zero-Day CVE-2026-42897 Actively Exploited With No Permanent Patch
Microsoft confirmed active exploitation of CVE-2026-42897, a cross-site scripting flaw in Exchange's Outlook W...
CY
1 Jun
This week's bugs to patch: a critical OTRS flaw and a Linux root hole on CISA's list
A short, practical read of the week's most urgent vulnerabilities: a critical pre-authentication flaw in the O...
CY
1 Jun
Advertisement