Wednesday 12 August 2026 14:02:02 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItaliano

#vulnerabilità critiche


MongoDB Flaws Put Server Patching and Driver Hygiene on the Same Front Line

Published: 12 August 2026 12:42Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A security notice naming multiple MongoDB Server and MongoDB Driver vulnerabilities, including one critical and 16 high-severity issues, is a reminder that database risk often lives in more than one layer.

When the Watchdog Gets Wounded: Fresh Velociraptor Flaws Put Trust in the Crosshairs

Published: 11 August 2026 18:06Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: DEEPAUDIT

A new cluster of 15 vulnerabilities in Velociraptor, including one rated critical, highlights how defensive platforms can become high-value attack surfaces when authorization and authentication break down.

SAP’s August Patch Wave Puts Enterprise Defenders on a Tight Clock

Published: 11 August 2026 12:16Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: DEEPAUDIT

SAP’s monthly security release delivered two critical and six high-severity fixes, a reminder that the real risk is not the bulletin count but how quickly each organization matches notes to its own environment.

Metabase Patch Alert Exposes the Risk Hiding Inside BI Infrastructure

Published: 11 August 2026 12:11Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Two critical Metabase vulnerabilities were fixed, including one reported as actively exploited, turning an analytics tool into a reminder that data platforms can become urgent security liabilities.

Four Flaws, One Small Router, and a Very Large Risk Surface

Published: 11 August 2026 10:14Category: Vulnerabilities & Patch ManagementGeo: Asia / TaiwanAuthor: NEONPALADIN

A vulnerability alert involving the Zyxel WAH7601 shows how a portable LTE router can turn into a high-value target when its firmware and management plane are exposed to remote abuse.

Ten Flaws, Seven Critical: Why MarkLogic’s Latest Patch Wave Matters

Published: 07 August 2026 16:38Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Progress Software’s fix for MarkLogic Server is a reminder that database patches are not housekeeping - they are frontline defense for the systems that store and search sensitive data.

Jenkins Gets a New Warning Shot as Critical Flaw Triage Begins

Published: 06 August 2026 14:11Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Italy’s national cyber response team has flagged fresh Jenkins vulnerabilities, including one rated critical, putting CI/CD operators on immediate watch.

Adobe Campaign Classic Faces a Tight Patch Window After 7 Vulnerabilities Surface

Published: 05 August 2026 14:29Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: DEEPAUDIT

Adobe released security updates for Campaign Classic to fix seven flaws, including six rated critical and one rated high, putting self-managed deployments under immediate patch pressure.

Apache Traffic Server Patch Wave Puts the Edge on Notice

Published: 31 July 2026 12:07Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

Four critical and eleven high-severity fixes turn an ordinary maintenance cycle into a reminder that proxy and cache software sits in a sensitive traffic path.

Chrome Patch Wave Exposes a Familiar Weak Spot: The Browser Update Gap

Published: 30 July 2026 18:44Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Google has issued a Chrome update that addresses 78 vulnerabilities, including 7 critical and 71 high-severity flaws, but the real risk is how long devices remain unpatched.

Node.js Patches Expose a Bigger Truth: Runtime Bugs Can Break Security Boundaries

Published: 30 July 2026 15:26Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

Security updates for Node.js close multiple flaws, including three rated high severity, and the operational risk depends on which runtime features an application actually uses.

Inside the Erlang/OTP Patch Surge: Why One Critical Flaw Can Shake a Whole Distributed Stack

Published: 28 July 2026 18:23Category: Vulnerabilities & Patch ManagementGeo: Europe / SwedenAuthor: DEEPAUDIT

A new wave of Erlang/OTP vulnerabilities puts a spotlight on the security pressure points that matter most in high-availability systems: runtime decoding, trust validation, and network exposure.

JetBrains Flaws Push Patch Teams Into Urgent Version Checks

Published: 24 July 2026 18:24Category: Vulnerabilities & Patch ManagementGeo: Europe / Czech RepublicAuthor: SECURESPECTER

Security updates now address multiple JetBrains vulnerabilities, including three rated critical and 13 rated high, but the practical question is which installations still need to be moved.

MongoDB’s Double Exposure: When the Database and the Admin Tool Both Need Urgent Scrutiny

Published: 24 July 2026 14:16Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: DEEPAUDIT

An ACN CSIRT Italia alert points to a layered risk in MongoDB Server and MongoDB Compass, where patching now depends on version, deployment, and how much trust an admin workstation is allowed to hold.

FreePBX Flaws Put the Voice Control Room in the Crosshairs

Published: 24 July 2026 14:11Category: Vulnerabilities & Patch ManagementGeo: North America / CanadaAuthor: DEEPAUDIT

Two critical issues and one high-severity flaw in FreePBX modules sharpen a familiar warning: when the admin layer of a PBX stack breaks, the whole phone system can become the attack surface.

Serv-U Under Pressure: 16 Flaws Closed, 15 Marked Critical

Published: 23 July 2026 16:23Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

ACN CSIRT Italia flagged a dense patch cycle in SolarWinds Serv-U, a reminder that file-transfer platforms can turn into high-value security boundaries overnight.

Seven Chrome Flaws, One Narrow Escape Window

Published: 17 July 2026 14:28Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Google has pushed a Chrome security update that closes seven vulnerabilities, and the mix of critical and high-severity bugs is a reminder that browser patching is now a race against reachability.

Firefox Zero-Days Turn the Browser Into the Weakest Link

Published: 14 July 2026 18:06Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Mozilla has pushed security updates for two critical Firefox flaws that are reportedly being exploited online, putting patch speed and endpoint visibility at the center of defense.

SAP’s July Patch Wave Exposes How Enterprise Risk Moves on a Clock

Published: 14 July 2026 12:36Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: SECURESPECTER

A monthly maintenance cycle turned into a high-priority security checkpoint as SAP’s July updates touched multiple product layers, from core application runtime to web and cloud components.

When the Login Box Becomes the Blast Radius

Published: 10 July 2026 17:54Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: DEEPAUDIT

Two critical Metabase flaws were patched after security updates, and the risk profile is unsettling: an authenticated user could turn ordinary access into arbitrary code execution on affected systems.