CiberLATAMbywhalemate

Vulnerabilities

Citrix NetScaler adds two exploited zero-days

CVE-2026-88771 and CVE-2026-88772 were used to plant web shells in NetScaler. CISA also added CVE-2026-88779 to KEV.

Oct 8, 2026 · 3 min

CVE-2026-96940 hits on-prem Exchange Server

Microsoft fixed an authorization flaw in on-prem Exchange Server that could let users read other mailboxes in the same organization.

Oct 6, 2026 · 2 min

Cisco fixes CVE-2026-76504 in SD-WAN Manager

Cisco fixed CVE-2026-76504 in Catalyst SD-WAN Manager, an actively exploited authentication bypass with no workaround.

Oct 1, 2026 · 2 min

CISA Adds CVE-2026-88772 in Citrix NetScaler

CISA added CVE-2026-88772 to its KEV catalog for active exploitation against Citrix NetScaler ADC

Sep 30, 2026 · 2 min

Apple patches CVE-2026-86950 in CoreGraphics

Apple fixed CVE-2026-86950 in iOS, iPadOS, and macOS. The CoreGraphics flaw may have been used in highly sophisticated attacks.

Sep 30, 2026 · 3 min

Brazil warns on Check Point, Fortinet

Brazil’s CTIR Gov added a critical alert on Check Point Quantum Security Gateway. Fortinet, GitLab and Stockagile also drew notices.

Sep 28, 2026 · 4 min

CISA adds SharePoint CVE-2026-65660 to KEV

CISA added CVE-2026-65660 to the KEV catalog after active exploitation was reported. Microsoft has already released patches.

Sep 27, 2026 · 2 min

Check Point Confirms Active CVE-2026-85102 Exploitation

The flaw affects Security Gateway and Spark Firewall, enables unauthenticated RCE, and was patched on Sept. 9.

Sep 25, 2026 · 2 min

Mexico reviews possible Aeroméxico data leak

Mexico’s anti-corruption office opened a review of a reported Aeroméxico data exposure. The airline said it had previously suffered a cyberattack.

Sep 24, 2026 · 2 min

Ecuador warns of active MikroTik RouterOS flaws

ECUCERT flagged three exploited CVEs in MikroTik RouterOS. Taiwan's NICS-TW and the Dutch DIVD also reported active attacks.

Sep 24, 2026 · 3 min

CVE-2026-94127 affects F5 BIG-IP APM

F5 and security agencies warned of an exploited flaw in BIG-IP APM that can enable unauthenticated RCE and is now in CISA’s KEV.

Sep 24, 2026 · 2 min

CISA Confirms Active Exploitation of ScreenConnect

CISA confirmed active exploitation of CVE-2026-84869 in ScreenConnect. ConnectWise told customers to update to 26.6.5

Sep 22, 2026 · 2 min

CERT-PY expands Ubiquiti alert over flaws

CERT-PY expanded its Ubiquiti advisory with affected products, versions and remote code execution risks tied to UniFi OS flaws.

Sep 18, 2026 · 5 min

Cisco confirms CVE-2026-76460 in ISE

Cisco disclosed an auth bypass in ISE and ISE-PIC with active exploitation and no workaround. Patches are required for 3.1 to 3.5.

Sep 18, 2026 · 2 min

CVE-2026-76461 Hits Cisco Secure Email Gateway

Cisco confirmed active exploitation in Secure Email Gateway. The flaw can let attackers run commands as root through a crafted email.

Sep 16, 2026 · 2 min

CERT-PY expands MISP vulnerability alerts

CERT-PY added new MISP alerts covering critical flaws, an authentication bypass, and other issues affecting versions through 2.5.45.

Sep 13, 2026 · 5 min

CISA adds 7 critical flaws to KEV

CISA added seven vulnerabilities to the KEV, including active exploitation in SonicWall SMA 1000, Kestra OSS, LiteLLM and Sangoma Switchvox.

Sep 12, 2026 · 3 min

Microsoft fixes 974 flaws, including two zero-days

Microsoft’s September 2026 Patch Tuesday fixed 974 vulnerabilities, including two actively exploited Windows zero-days.

Sep 9, 2026 · 3 min

Google patches Chrome for CVE-2026-85046

Google issued an emergency Chrome update fixing CVE-2026-85046, an actively exploited flaw in V8.

Sep 8, 2026 · 3 min

CISA adds active PaperCut flaws to KEV

CISA added CVE-2026-81578, CVE-2026-82078, and CVE-2026-82329 to KEV after active exploitation in PaperCut

Sep 6, 2026 · 2 min