TL;DR Apache InLong patched three flaws in version 2.4.0. The most notable is an Apache InLong SQL...
Do Son
Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.
TL;DR Dell patched three flaws in its PowerStore T storage family. The most severe, CVE-2026-67271, scores a...
TL;DR The maintainers of vm2 patched three critical flaws on August 17, 2026. The most severe, CVE-2026-47686,...
TL;DR Microsoft patched CVE-2026-47301, an elevation of privilege flaw in Configuration Manager (SCCM). A researcher published proof-of-concept...
TL;DR Red Hat disclosed three critical flaws across its cloud and identity products. The most severe, CVE-2026-66780,...
At a glance Actor or group: Jewelbug (suspected China-based threat group) Activity type: Cyber espionage and cryptocurrency...
At a glance Actor or group: Suspected Chinese-speaking cybercriminals. Activity type: Phishing-as-a-Service (PhaaS). Targets or victims: Shoppers...
At a glance Malware family: Evooo1Bot Threat actor: Unknown Target or victims: Internet-facing devices, routers, firewalls, and...
TL;DR Splunk fixed 17 vulnerabilities across its apps and add-ons on August 19, 2026. The worst, CVE-2026-76404,...
Google announced today that it is giving all eligible college students in the United States a full...
This week, numerous users discovered that executing quick or full scans with Microsoft Defender resulted in inexplicable...
TL;DR Splunk fixed 60 vulnerabilities in Splunk Enterprise on August 19, 2026. Three critical flaws share a...
TL;DR Red Hat disclosed three high-severity flaws in its Advanced Cluster Management and Multicluster Engine for Kubernetes....
TL;DR CERT Polska reports active exploitation of a Zimbra unauthenticated remote code execution flaw, tracked as CVE-2026-73570....
TL;DR Cisco fixed a critical SQL injection flaw in Crosswork, tracked as CVE-2026-20030 at CVSS 10.0. The...
TL;DR Splunk patched a critical OS command injection flaw in its AI Toolkit, tracked as CVE-2026-20266. The...
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
TL;DR Cisco released hardening updates for Secure Workload on August 19, 2026. The Cisco Secure Workload authentication...
TL;DR NVIDIA patched a critical NVIDIA Triton vulnerability tracked as CVE-2026-47627. The flaw scores a CVSS base...
TL;DR Citrix patched a critical NetScaler authentication bypass tracked as CVE-2026-19490. It scores 9.3 on CVSS v4....
WarnAt a glance Actor / group Unattributed threat actors (no group named in this advisory) Activity type...
HashiCorp disclosed a Vault Secrets Operator vulnerability this week. Then, the bug, tracked as CVE-2026-8715, scores a...
TL;DR Red Hat disclosed three critical flaws in its multicluster Kubernetes products. The most severe, CVE-2026-66792, scores...