直近14日のアクティビティ(日別件数)
脆弱性製品・サービス
表示 200 件 / 13ソース / 07-27 06:06 取得
おすすめチャンスKEVEPSSはてブHN
| 日付 | ソース | 内容 | CVE |
|---|---|---|---|
| 07-25 | AWS |
Amazon MWAA now supports Apache Airflow version 2.11.2
NEW Amazon Managed Workflows for Apache Airflow (MWAA) now supports Apache Airflow version 2.11.2. Amazon MWAA is a managed service th… |
— |
| 07-25 | AWS |
Amazon EC2 Dedicated Hosts now support host resource groups without self-managed licenses
NEW Starting today, customers can create Host Resource Groups (HRGs) for EC2 Dedicated Hosts without the previously required step of c… |
— |
| 07-25 | Cisco Blogs |
Antares and the Partner Opportunity: Local, Efficient, Trusted AI for Security
NEW はてブ 1 Cisco just launched Antares — open-weight small language models that localize known vulnerabilities inside your own infrastructure… |
— |
| 07-25 | AWS |
AWS Lambda now publishes logs for Lambda Managed Instances capacity providers
NEW AWS Lambda now publishes logs for Lambda Managed Instances (LMI) capacity providers to Amazon CloudWatch Logs, giving you visibili… |
— |
| 07-25 | Cisco Blogs |
The Journey towards Logically Air-Gapped Deployment
NEW はてブ 1 Achieve digital autonomy in critical infra with a 'logically air-gapped' model using eBPF, Cilium, and Cisco for secure, compliant… |
— |
| 07-24 | AWS |
Amazon ECS Service Connect now supports Zone-Aware routing
NEW Amazon Elastic Container Service (Amazon ECS) introduces zone-aware routing for ECS Service Connect, enabling customers to re… |
— |
| 07-24 | AWS |
Amazon RDS for MySQL supports MySQL 9.7 in Amazon RDS Database Preview Environment
NEW Amazon RDS for MySQL now supports version community MySQL 9.7 in the Amazon RDS Database Preview Environment, allowing y… |
— |
| 07-24 | Cisco Blogs |
From One Desk to the Whole Enterprise: Making Local AI Resilient
NEW はてブ 1 This is a breakthrough moment for enterprise AI. Leaner models, an open and ready software stack, and powerful hardware like AMD R… |
— |
| 07-24 | Cisco Blogs |
One Million Learners: Scaling Digital Skills and Inclusion in Nigeria
NEW Where digital skills are key to unlocking vast opportunities in an AI-enabled future, Cisco Networking Academy is playing a transf… |
— |
| 07-24 | AWS |
Amazon Bedrock AgentCore now delivers unified observability with traces and logs in a single log group
NEW Amazon Bedrock AgentCore now delivers agent traces and prompts to the same log group as your agent's logs, giving you unified obse… |
— |
| 07-24 | AWS |
Amazon CloudWatch Logs now supports Application Load Balancer logs
NEW はてブ 1 Amazon CloudWatch Logs now supports Application Load Balancer (ALB) logs as vended logs, improving observability and simplifying d… |
— |
| 07-24 | AWS |
Amazon EC2 I8ge instances are now generally available in additional AWS regions
NEW Amazon Web Services (AWS) announces the availability of Amazon EC2 I8ge instances in AWS Europe (London) and Canada (Central) … |
— |
| 07-24 | Azure |
[In preview] Public Preview: Azure DDoS Protection custom policy
NEW Azure DDoS Protection custom policy
is now in public preview. This capability provides per-resource control over
DDoS mitigation t… |
— |
| 07-24 | AWS |
Amazon EVS is now available in additional Regions
NEW Today, we're announcing that Amazon Elastic VMware Service (Amazon EVS) is now available in the Asia Pacific (Seoul), Europe (Zuri… |
— |
| 07-24 | AWS |
Announcing region expansion of G7e instances on SageMaker AI inference
NEW We are pleased to announce the availability of Amazon EC2 G7e instances in Asia Pacific (Seoul), Europe (London), and Asia Pacific… |
— |
| 07-24 | Cisco Blogs |
Cisco Firewall Migration Manager: A Faster, Simpler, More Confident Path to Secure Firewall
NEW Cisco Firewall Migration Manager brings predictable timelines, resilient workflows, and multi-migration management to your move to… |
— |
| 07-24 | Cisco Blogs |
Why AI inference is becoming a networking issue
NEW An AI prompt is a distributed flow across networks, GPUs, and AI fabrics. A new white paper from Cisco, "A Day in the Life of a Pr… |
— |
| 07-23 | AWS |
Announcing region expansion of G6 instances on SageMaker AI Inference
NEW We are pleased to announce the availability of Amazon EC2 G6 instances in the AWS GovCloud (US-East) region on Amazon SageMaker AI… |
— |
| 07-23 | AWS |
AWS Wickr announces Data Retention Service feature
NEW AWS Wickr now offers a managed Data Retention Service feature for Premium users, enabling organizations to retain conversations ac… |
— |
| 07-23 | JPCERT |
Weekly Report: WordPressにリモートコード実行につながる脆弱性
NEW WordPressにリモートコード実行につながる脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: Google Chromeに複数の脆弱性
NEW Google Chromeに複数の脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: VMware Avi Load Balancerに複数の脆弱性
NEW VMware Avi Load Balancerに複数の脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のSplunk製品に脆弱性
NEW 複数のSplunk製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のCisco製品に脆弱性
NEW 複数のCisco製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: Drupal coreに複数の脆弱性
NEW Drupal coreに複数の脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のZoom製品に脆弱性
NEW 複数のZoom製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: SonicWallのSMA1000シリーズに複数の脆弱性
NEW SonicWallのSMA1000シリーズに複数の脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のFortinet製品に脆弱性
NEW 複数のFortinet製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のSAP製品に脆弱性
NEW 複数のSAP製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: Firefoxに複数の脆弱性
NEW Firefoxに複数の脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のAdobe製品に脆弱性
NEW 複数のAdobe製品に脆弱性 |
— |
| 07-23 | JPCERT |
Weekly Report: JPCERT/CCが2026年4月から6月分の「JPCERT/CC 四半期レポート」を公開
NEW JPCERT/CCが2026年4月から6月分の「JPCERT/CC 四半期レポート」を公開 |
— |
| 07-23 | JPCERT |
Weekly Report: 複数のマイクロソフト製品に脆弱性
NEW 複数のマイクロソフト製品に脆弱性 |
— |
| 07-23 | OpenAI |
Launching Health in ChatGPT
NEW HN 31 Health in ChatGPT now lets eligible U.S. users securely connect medical records and Apple Health to get more personalized insights… |
— |
| 07-23 | AWS |
Amazon EC2 High Memory U7i instances now available in additional regions
NEW Amazon EC2 High Memory U7in-16TB instances (u7in-16tb.224xlarge) are now available in AWS South America (São Paulo) region, and U7… |
— |
| 07-23 | AWS |
Amazon EC2 C7a instances are now available in the US West (N. California) Region
NEW Starting today, the compute optimized Amazon EC2 C7a instances are now available in AWS US West (N. California) Region. C7a instan… |
— |
| 07-23 | AWS |
Amazon EC2 M8a instances now available in the Asia Pacific (Hyderabad) region
NEW Starting today, the general-purpose Amazon EC2 M8a instances are available in AWS Asia Pacific (Hyderabad) region. M8a instances a… |
— |
| 07-23 | AWS |
Amazon EC2 M8id instances are now available in Europe (Ireland) region
NEW Amazon EC2 M8id instances are now available in (Ireland). These instances are powered by custom Intel Xeon 6 processors and delive… |
— |
| 07-23 | AWS |
AWS Network Load Balancer now supports Listener Rules for custom traffic routing
NEW はてブ 1 Network Load Balancer (NLB) now supports listener rules allowing you to route connections to different target groups based on the … |
— |
| 07-23 | AWS |
Amazon Corretto July 2026 Quarterly Updates
NEW On July 22, 2026, Amazon announced quarterly security and critical updates for Amazon Corretto Long-Term Support (LTS) and Feature… |
— |
| 07-23 | Cisco Blogs |
How Cisco architected AI-driven support and validated against industry benchmarks
NEW はてブ 1 Discover how Cisco transformed customer support into a context-aware, in-product experience that now reaches more than 250,000 use… |
— |
| 07-23 | Gemini |
Here’s how to ask Gemini Live for help with anything you see.
NEW Have you ever struggled to describe something you’re looking at? Whether it’s a complex manual, a blinking error code, or a unique… |
— |
| 07-23 | AWS |
Amazon SageMaker AI inference now supports G7 instances
NEW Amazon SageMaker AI inference now supports G7 instances powered by NVIDIA RTX PRO 4500 Blackwell Server Edition GPUs, enabling you… |
— |
| 07-22 | AWS |
Amazon EKS now supports EFA and placement groups on Amazon EKS Auto Mode and Karpenter
NEW はてブ 1 Amazon Elastic Kubernetes Service (EKS) now supports Amazon EC2 placement groups and Elastic Fabric Adapter (EFA) network device c… |
— |
| 07-22 | Cisco Blogs |
In the AI Era, Cyber Defense Needs a New Playbook
NEW はてブ 1 AI is changing the speed of cyber risk. Cisco’s executive brief outlines how organizations need to move from current operating mod… |
— |
| 07-22 | Cisco Blogs |
Tech for the Modern Warfighter: Cisco at DoDIIS 2026
NEW Join Cisco at DoDIIS 2026 in Tampa to explore AI-driven infrastructure and security innovations. Discover how we empower the defen… |
— |
| 07-22 | OpenAI |
Building AI infrastructure with the Effingham County community
NEW OpenAI announces Project Camellia in Effingham County, Georgia, with commitments to responsible energy, community investment, jobs… |
— |
| 07-22 | OpenAI |
How news organizations are using AI to advance their vital missions
NEW News organizations are using AI to strengthen reporting, grow audiences, and improve business operations, with OpenAI tools suppor… |
— |
| 07-22 | Gemini |
3 Google updates from Galaxy Unpacked 2026
NEW はてブ 1 We shared how Samsung users can boost productivity and get time back on new foldables, watches, and glasses coming soon. |
— |
| 07-22 | OpenAI |
Advancing the next era of national science
NEW OpenAI outlines its commitment to advancing American science working with the U.S. Department of Energy and national labs to use f… |
— |
| 07-22 | OpenAI |
Introducing OpenAI Presence
NEW HN 64 Introducing OpenAI Presence, a proven enterprise AI agent platform that helps organizations deploy trusted voice and chat agents f… |
— |
| 07-22 | CISA KEV |
CVE-2026-16232 Check Point SmartConsole Improper Authentication Vulnerability
◎おすすめ チャンス NEW KEV EPSS 13% Check Point SmartConsole |
CVE-2026-16232 |
| 07-22 | CISA KEV |
CVE-2026-50522 Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
◎おすすめ NEW KEV EPSS 57% Microsoft SharePoint |
CVE-2026-50522 |
| 07-22 | OpenAI |
NTT DATA Group cuts incident analysis to 30 minutes with Codex
NEW NTT DATA Group uses ChatGPT Enterprise and Codex to help 9,000 employees automate work, cut incident analysis to 30 minutes, and s… |
— |
| 07-22 | M365 |
Microsoft Purview: Data Loss Prevention - Data Security for non-Microsoft connected apps
NEW Microsoft Purview Data Loss Prevention and Information Protection Auto-labeling capabilities now extend to non-Microsoft connected… |
— |
| 07-22 | Windows |
Announcing Windows 11 Insider Preview Build 28120.2546 for Experimental (26H1)
NEW Hello Windows Insiders,
Today we're releasing build 28120.2546 for the Experimental (26H1) channel. Release notes can be found ove… |
— |
| 07-22 | Gemini |
13 Google tips for a fun, productive summer off from college
NEW Discover how college students can use Google AI tools, like Gemini and AI Mode, to prep for grad school, internships and fall cour… |
— |
| 07-22 | OpenAI |
Introducing the ChatGPT for small business program
NEW OpenAI launches the ChatGPT for Small Businesses program, helping entrepreneurs build AI skills, automate work, and grow with Chat… |
— |
| 07-22 | Cisco PSIRT |
Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability
◎おすすめ NEW KEV EPSS 90% A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD… |
CVE-2026-20182 CVE-2026-20127 CVE-2026-20245 |
| 07-22 | Gemini |
Introducing Gemini 3.6 Flash, 3.5 Flash-Lite, and 3.5 Flash Cyber
NEW はてブ 44 We’re introducing new Gemini models, including Gemini 3.6 Flash, 3.5 Flash-Lite and 3.5 Flash Cyber. |
— |
| 07-21 | Fortinet News |
Intel and Fortinet Collaborate to Advance Cybersecurity Innovation and Strengthen Global Supply Chain Resilience
NEW Intel and Fortinet announced a strategic collaboration to develop Fortinet Security Processor 6 (SP6). |
— |
| 07-21 | Outbreak |
Palo Alto Networks PAN-OS GlobalProtect Auth Bypass
◎おすすめ NEW EPSS 94% Attackers are actively exploiting a PAN-OS GlobalProtect authentication bypass vulnerability to gain unauthorized VPN access to ex… |
CVE-2026-0257 |
| 07-21 | OpenAI |
OpenAI and Hugging Face partner to address security incident during model evaluation
NEW はてブ 1 OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capa… |
— |
| 07-21 | CISA KEV |
CVE-2026-60137 WordPress Core SQL Injection Vulnerability
◎おすすめ NEW KEV はてブ 2 EPSS 78% WordPress Core |
CVE-2026-60137 |
| 07-21 | CISA KEV |
CVE-2026-63030 WordPress Core Interpretation Conflict Vulnerability
◎おすすめ NEW KEV はてブ 2 EPSS 98% WordPress Core |
CVE-2026-63030 |
| 07-21 | CISA KEV |
CVE-2026-0770 Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
◎おすすめ チャンス NEW KEV EPSS 53% Langflow Langflow |
CVE-2026-0770 |
| 07-21 | CISA KEV |
CVE-2021-27137 DD-WRT Stack-Based Buffer Overflow Vulnerability
◎おすすめ チャンス NEW KEV EPSS 16% DD-WRT DD-WRT |
CVE-2021-27137 |
| 07-21 | OpenAI |
David Vélez and Robin Vince join the boards of the OpenAI Foundation and OpenAI Group PBC
NEW David Vélez and Robin Vince join the boards of the OpenAI Foundation and OpenAI Group PBC, bringing global leadership in finance, … |
— |
| 07-21 | M365 |
Microsoft Teams: Unified Agent and App Installation Management Across Microsoft 365 and Teams Admin Center
NEW Administrators using the Microsoft 365 admin center and Teams admin center will be able to apply app and agent installation change… |
— |
| 07-21 | Windows |
Announcing new builds for 20 July 2026
NEW Hello Windows Insiders,
Today we are releasing new Windows 11 Insider Preview Builds across Beta, Experimental and Release Preview… |
— |
| 07-21 | Gemini |
5 ways to build a side hustle with Gemini
NEW Launching a side business? Use Gemini to design your side hustle, conduct market research and automate logistics. |
— |
| 07-21 | Cisco PSIRT |
Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities
NEW Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals could allow a… |
CVE-2025-20204 CVE-2025-20205 |
| 07-20 | Azure |
[Launched] Generally Available: IPv6 support for Azure VPN Gateway
NEW IPv6 support for Azure VPN Gateway enables customers to run IPv6 inner traffic through VPN tunnels in a dual‑stack configuration. … |
— |
| 07-20 | OpenAI |
Safety and alignment in an era of long-horizon models
NEW はてブ 1 OpenAI shares lessons from deploying long-running AI models, highlighting new safety risks, observed failures, and improved safegu… |
— |
| 07-18 | Azure |
[Launched] Generally Available: Azure Functions support for Python 3.14
You can now develop functions using Python 3.14 locally and
deploy them to Azure Functions plans on Linux. Upgrade your apps to Py… |
— |
| 07-17 | Azure |
[Launched] Generally Available: Microsoft Defender security assessments for Azure Database for PostgreSQL Flexible Server
Microsoft Defender Cloud Security Posture Management (CSPM) assessments for Azure Database for PostgreSQL Flexible Server are now … |
— |
| 07-17 | OpenAI |
A scorecard for the AI age
Sarah Friar, CFO of OpenAI, introduces a practical AI scorecard to measure ROI through useful work, cost per successful task, depe… |
— |
| 07-17 | Outbreak |
Joomla SP Page Builder RCE
◎おすすめ チャンス KEV EPSS 88% FortiGuard Labs continues to observe active exploitation of CVE-2026-48908, a critical unauthenticated remote code execution vulne… |
CVE-2026-48908 |
| 07-17 | OpenAI |
Why teens deserve access to safe AI
Learn how OpenAI is making ChatGPT safer for teens with age-appropriate protections, learning tools, parental controls, and expert… |
— |
| 07-16 | OpenAI |
How Codex became a collaborator for OpenAI’s creative team
How OpenAI’s creative team uses Codex to build custom creative tools, accelerate ideation, and prototype faster with context-aware… |
— |
| 07-16 | CISA KEV |
CVE-2026-58644 Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
KEV EPSS 5% Microsoft SharePoint |
CVE-2026-58644 |
| 07-16 | CISA KEV |
CVE-2026-25089 Fortinet FortiSandbox OS Command Injection Vulnerability
KEV EPSS 70% Fortinet FortiSandbox |
CVE-2026-25089 |
| 07-16 | CISA KEV |
CVE-2026-39808 Fortinet FortiSandbox OS Command Injection Vulnerability
KEV EPSS 90% Fortinet FortiSandbox |
CVE-2026-39808 |
| 07-16 | OpenAI |
How Cars24 scales conversations and builds faster with OpenAI
Cars24 uses OpenAI-powered voice and chat agents to handle 1M+ monthly conversation minutes, recover 12% of lost leads, and bring … |
— |
| 07-16 | Azure |
[Launched] Generally Available: Expanding Azure Arc SQL Migration with SQL Server on Azure Virtual Machines
The Azure Arc migration solution now supports SQL Server on Azure Virtual Machines as a migration target. Arc-enabled SQL Server i… |
— |
| 07-16 | Cisco PSIRT |
Cisco Advance Notification for Publication of July 15, 2026, Security Advisories
On July 15, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories:
Cisco Security … |
CVE-2026-20150 CVE-2026-20153 CVE-2026-20156 ほか 4 件 |
| 07-16 | Cisco PSIRT |
Cisco RoomOS Security Hardening Release: July 2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a… |
CVE-2026-20150 CVE-2026-20153 CVE-2026-20156 ほか 3 件 |
| 07-16 | Cisco PSIRT |
Cisco Identity Services Engine Path Traversal Vulnerability
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenti… |
CVE-2026-20146 |
| 07-15 | OpenAI |
The US is advancing AI safety through state and federal action
OpenAI outlines a “reverse federalism” approach to AI governance, where state laws help build a national framework for safe, democ… |
— |
| 07-15 | JPCERT | 注意喚起: 2026年7月マイクロソフトセキュリティ更新プログラムに関する注意喚起 (公開) | — |
| 07-15 | CISA KEV |
CVE-2026-46817 Oracle E-Business Suite Improper Privilege Management Vulnerability
KEV EPSS 13% Oracle E-Business Suite |
CVE-2026-46817 |
| 07-15 | CISA KEV |
CVE-2023-4346 KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability
チャンス KEV EPSS 1% KNX Association KNX Protocol Connection Authorization Option 1 |
CVE-2023-4346 |
| 07-15 | M365 |
Microsoft Teams: Teams events attendance and engagement report policy
Teams events will soon have a separate attendance and engagement report policy from the "CsTeamsMeetingPolicy" attendance and enga… |
— |
| 07-15 | Azure |
[In preview] Public Preview: Azure Front Door edge actions
Announcing the public preview of Azure Front Door edge actions (serverless compute at the edge).With edge actions, customers can e… |
— |
| 07-14 | Fortinet News |
Fortinet Expands FortiEndpoint with New Capabilities for the AI Era
New innovations delivered through one agent, one console, and one license help security teams safely enable AI adoption, strengthe… |
— |
| 07-14 | Fortinet PSIRT |
Buffer overread in authd and wad daemon
CVSSv3 Score:
4.1
A buffer over-read vulnerability [CWE-126] in FortiOS, FortiProxy, and FortiSASE may allow an authenticate… |
— |
| 07-14 | Fortinet PSIRT |
Cross-Site Scripting in Domain parameter
CVSSv3 Score:
5.3
An Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability [CWE-80] in… |
— |
| 07-14 | Fortinet PSIRT |
Header injection in Web Filter warning page
CVSSv3 Score:
3.4
An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CW… |
— |
| 07-14 | Fortinet PSIRT |
Header injection in captive portal authentication form
CVSSv3 Score:
3.1
An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CW… |
— |
| 07-14 | Fortinet PSIRT |
Missed certificate verification in AD Connector communication with FortiClient EMS
CVSSv3 Score:
6.7
An Improper Certificate Validation vulnerability [CWE-295] in FortiClient EMS may allow a remote unauthent… |
— |
| 07-14 | Fortinet PSIRT |
Out of bounds read in GUI
CVSSv3 Score:
7.0
An out of bounds read [CWE-125] vulnerability in FortiAuthenticator may allow a remote unauthenticated att… |
— |
| 07-14 | Fortinet PSIRT |
Path traversal in CLI command allows deletion of root file system
CVSSv3 Score:
5.0
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] i… |
— |
| 07-14 | Fortinet PSIRT |
SSL-VPN Reflected XSS
CVSSv3 Score:
6.1
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE… |
— |
| 07-14 | Fortinet PSIRT |
Stack Buffer Overflow in Log Report
CVSSv3 Score:
5.9
A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS, FortiProxy and FortiPAM may allow a priv… |
— |
| 07-14 | Fortinet PSIRT |
Supers override fails to properly override supervisor address
CVSSv3 Score:
6.9
An Improper Restriction of Communication Channel to Intended Endpoints [CWE-923] vulnerability in FortiSIE… |
— |
| 07-14 | Fortinet PSIRT |
Unauthenticated VNC access exposed on all interfaces
CVSSv3 Score:
7.7
An Exposure of Resource to Wrong Sphere vulnerability [CWE-668] in FortiSandbox may allow an unauthenticat… |
— |
| 07-14 | Gemini |
How Gemini is speaking the language of Southeast Asia
Gemini is taking off across Southeast Asia, thanks to its local language fluency and the region’s mobile-first population. |
— |
| 07-14 | CISA KEV |
CVE-2026-56155 Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability
KEV EPSS 2% Microsoft Active Directory Federation Services |
CVE-2026-56155 |
| 07-14 | CISA KEV |
CVE-2026-56164 Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability
KEV EPSS 18% Microsoft SharePoint Server |
CVE-2026-56164 |
| 07-14 | CISA KEV |
CVE-2026-15409 SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability
KEV EPSS 78% SonicWall SMA1000 Appliances |
CVE-2026-15409 |
| 07-14 | CISA KEV |
CVE-2026-15410 SonicWall SMA1000 Appliances Code Injection Vulnerability
KEV EPSS 76% SonicWall SMA1000 Appliances |
CVE-2026-15410 |
| 07-14 | Windows |
Improving Windows Search Box, with less clutter and more control
Hello Windows Insiders,
You’ve been asking for search that is faster, more relevant, and easier to use—whether you’re opening an a… |
— |
| 07-13 | CISA KEV |
CVE-2008-4128 Cisco IOS Cross-Site Request Forgery Vulnerability
チャンス KEV EPSS 33% Cisco IOS |
CVE-2008-4128 |
| 07-11 | Azure |
Retirement: Support for Python-2.7; 3.8 and PowerShell- 7.1; 7.2 will be retired on September 30, 2026
Starting October 1, 2026, the specified runtime versions Python 2.7, Python 3.8, and PowerShell 7.1 & 7.2. will
no longer be suppo… |
— |
| 07-11 | Gemini |
Here’s how to make study notebooks in the Gemini app.
Studying for a test, but not sure where to start? Study notebooks, a new feature in the Gemini app, can help you get organized and… |
— |
| 07-10 | CISA KEV |
CVE-2026-56291 Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability
KEV EPSS 76% Balbooa Forms |
CVE-2026-56291 |
| 07-10 | CISA KEV |
CVE-2026-48939 iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability
KEV EPSS 24% iCagenda iCagenda |
CVE-2026-48939 |
| 07-10 | Windows |
Evolving Windows vulnerability management to meet the speed of AI-powered discovery
Windows has adapted to emerging threats for decades, all while operating at unparalleled scale. It's our responsibility to bring c… |
— |
| 07-09 | Gemini |
3 ways this coffee shop is growing with Gemini
Small businesses like coffee shops can use Gemini to save time on graphic design, email marketing and sales forecasting. |
— |
| 07-08 | Azure |
[In preview] Public Preview: Exceptions in WAF for Azure Application Gateway and Azure Front Door
Azure Web Application Firewall (WAF) helps protect your web applications from common threats and attacks. In some cases, WAF may b… |
— |
| 07-08 | Azure |
[Launched] Generally Available: Network Security Perimeter support for Azure Event Hubs
Azure Event Hubs now supports Network Security Perimeter (NSP), enabling organizations to define a logical network isolation bound… |
— |
| 07-08 | Azure |
[Launched] Generally Available: Azure Red Hat OpenShift in Chile Central
Azure Red Hat OpenShift (ARO) is now generally available in Azure
Chile Central, expanding regional availability for OpenShift dep… |
— |
| 07-08 | Windows |
New in Edge for developers – Style layout gaps, improve keyboard accessibility and migrate your PWA to a new origin
Welcome to New in Edge for developers, a new series featuring recent web platform updates in Microsoft Edge that help web develope… |
— |
| 07-07 | Outbreak |
Ivanti Sentry OS Command Injection Vulnerability
KEV EPSS 100% FortiGuard Labs continues to observe exploitation attempts targeting CVE-2026-10520 following the public release of technical deta… |
CVE-2026-10520 |
| 07-07 | CISA KEV |
CVE-2026-48908 JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability
チャンス KEV EPSS 88% JoomShaper SP Page Builder |
CVE-2026-48908 |
| 07-07 | CISA KEV |
CVE-2026-55255 Langflow Authorization Bypass Through User-Controlled Key Vulnerability
KEV EPSS 29% Langflow Langflow |
CVE-2026-55255 |
| 07-07 | CISA KEV |
CVE-2026-56290 Joomlack Page Builder Improper Access Control Vulnerability
KEV EPSS 83% Joomlack Page Builder |
CVE-2026-56290 |
| 07-07 | CISA KEV |
CVE-2026-48282 Adobe ColdFusion Path Traversal Vulnerability
KEV EPSS 99% Adobe ColdFusion |
CVE-2026-48282 |
| 07-07 | Windows |
Announcing new builds for July 6 2026
Hello Windows Insiders,
We have new releases today with builds across Beta and Experimental.
New builds this week
Today we are rel… |
— |
| 07-07 | Cisco PSIRT |
Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities
EPSS 1% Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a … |
CVE-2026-20181 CVE-2026-20190 |
| 07-07 | Azure |
[Launched] Generally Available: Microsoft Entra ID-based access for Azure Blob Storage SFTP
Microsoft Entra ID-based access for Azure Blob Storage SFTP is now generally available in all regions. You can now use Entra ID id… |
— |
| 07-06 | Cisco PSIRT |
Cisco Catalyst Center Arbitrary File Read Vulnerability
EPSS 1% A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted… |
CVE-2026-20191 |
| 07-06 | Outbreak |
Langflow Unauth RCE Attack
FortiGuard Labs has observed a significant uptick in attacks targeting Langflow, leveraging a recently discovered authentication b… |
— |
| 07-03 | Cisco PSIRT |
ClamAV Vulnerabilities Affecting Cisco Products: July 2026
EPSS 1% Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanni… |
CVE-2026-20213 CVE-2026-20214 CVE-2026-20215 ほか 4 件 |
| 07-02 | Fortinet News | Fortinet to Announce Second Quarter 2026 Financial Results | — |
| 07-02 | Gemini |
The latest AI news we announced in June 2026
Here are Google’s latest AI updates from June 2026. |
— |
| 07-02 | Cisco PSIRT |
Cisco Advance Notification for Publication of July 1, 2026, Security Advisories
EPSS 1% On July 1, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories:
Cisco Security A… |
CVE-2026-20191 CVE-2026-20216 CVE-2026-20213 ほか 5 件 |
| 07-02 | Cisco PSIRT |
Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability
KEV EPSS 81% A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management E… |
CVE-2026-20230 |
| 07-01 | CISA KEV |
CVE-2026-45659 Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability
KEV EPSS 9% Microsoft SharePoint Server |
CVE-2026-45659 |
| 07-01 | Gemini |
Gemini Spark updates: macOS launch, connected apps and more
The latest Gemini Spark updates brings Spark to the macOS app, connects with your favorite apps and tracks topics in real time. |
— |
| 07-01 | Gemini |
Start building with Nano Banana 2 Lite and Gemini Omni Flash
Scale your ideas with Nano Banana 2 Lite, our fastest, most cost-efficient Gemini Image model, and Gemini Omni Flash for high-qual… |
— |
| 06-30 | Gemini |
The Gemini app is bringing personalized image creation to more users.
Personal Intelligence makes the Gemini app feel tailored to you. With your permission, it pulls from Google tools like Gmail, Goog… |
— |
| 06-30 | Windows |
Elder Scrolls Online introduces new in-game event: High Seas of Tamriel
Fans of PC favorite Elder Scrolls Online can look forward to a new in-game event: the High Seas of Tamriel, which XBOX Wire’s Mike… |
— |
| 06-30 | Gemini |
Gemini can now take notes in Google Meet for Google AI Pro and Ultra subscribers.
Google Meet's "Take notes for me" feature is available to Google AI Pro and Ultra subscribers in select languages. |
— |
| 06-29 | CISA KEV |
CVE-2026-48558 SimpleHelp Authentication Bypass Vulnerability
KEV EPSS 11% SimpleHelp SimpleHelp |
CVE-2026-48558 |
| 06-27 | Windows |
Announcing new builds for 26 June 2026, retail launch of new WIP improvements
Hello Windows Insiders,
We have new releases today with builds across Beta and Experimental, and are excited to begin rolling out … |
— |
| 06-27 | Gemini |
Here's how Gemini can help you avoid jetlag.
If you’ve got a faraway trip coming up, the Gemini app can help you avoid jetlag so you can make the most of your visit.Once you’v… |
— |
| 06-26 | Gemini |
Try these 3 Google AI tools to help find your next job.
Use Google AI tools — like Career Dreamer, NotebookLM and Gemini Live — for resumes, cover letters, interview prep and more. |
— |
| 06-25 | Cisco PSIRT |
Cisco Finesse Remote File Inclusion Vulnerability
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations int… |
CVE-2026-20175 |
| 06-25 | CISA KEV |
CVE-2026-12569 PTC Windchill and FlexPLM Improper Input Validation Vulnerability
KEV ランサム EPSS 2% PTC Windchill and FlexPLM |
CVE-2026-12569 |
| 06-25 | CISA KEV |
CVE-2026-20230 Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability
KEV EPSS 81% Cisco Unified Communications Manager |
CVE-2026-20230 |
| 06-25 | Azure |
[In preview] Public Preview: Application Gateway for Containers – Inference gateway
Application Gateway for Containers is extending its ingress gateway feature set with new AI gateway capabilities. The new inferenc… |
— |
| 06-25 | Fortinet News |
Fortinet Appoints Public Sector Leader and Tech Executive Derek Kan to Its Board of Directors
Fortinet announces the appointment of Derek Kan to its board of directors, further strengthening company's board with distinguishe… |
— |
| 06-25 | Windows |
Age of Empires Mobile: PC Edition now available
Great news for players of Age of Empires Mobile! The game is now available on Steam and the Microsoft Store for PCs.
Players who’v… |
— |
| 06-24 | M365 |
Microsoft Viva: Insights for GitHub Copilot spend and usage
AI spend and usage insights for GitHub Copilot will be available on Viva Insights for managers with at least 5 direct reports (sco… |
— |
| 06-23 | JPCERT | 注意喚起: Fortinet製品に関連する認証情報の漏えいに関する注意喚起 (公開) | — |
| 06-23 | CISA KEV |
CVE-2025-67038 Lantronix EDS5000 Code Injection Vulnerability
KEV EPSS 14% Lantronix EDS5000 |
CVE-2025-67038 |
| 06-23 | CISA KEV |
CVE-2026-34910 Ubiquiti UniFi OS Improper Input Validation Vulnerability
KEV EPSS 87% Ubiquiti UniFi OS |
CVE-2026-34910 |
| 06-23 | CISA KEV |
CVE-2026-34909 Ubiquiti UniFi OS Path Traversal Vulnerability
KEV EPSS 57% Ubiquiti UniFi OS |
CVE-2026-34909 |
| 06-23 | CISA KEV |
CVE-2026-34908 Ubiquiti UniFi OS Improper Access Control Vulnerability
KEV EPSS 58% Ubiquiti UniFi OS |
CVE-2026-34908 |
| 06-23 | M365 |
Microsoft Teams: Block all identified external bots automatically from joining your meetings
Extending the admin controls provided for managing external AI bots and regulating their access to your meetings, we are adding th… |
— |
| 06-23 | Cisco PSIRT |
Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisc… |
CVE-2026-20055 CVE-2026-20109 |
| 06-20 | Windows |
Announcing new builds for 19 June 2026, version 26H2 for Experimental
Hello Windows Insiders,
We have new releases today with builds across Beta and Experimental, including Windows 11, version 26H2 fo… |
— |
| 06-19 | Outbreak |
HTTP/2 Bomb Denial-of-Service Vulnerability
EPSS 28% Security researchers have disclosed a new denial-of-service (DoS) attack technique dubbed HTTP/2 Bomb, tracked as CVE-2026-49975, … |
CVE-2026-49975 |
| 06-18 | CISA KEV |
CVE-2026-20253 Splunk Enterprise Missing Authentication for Critical Function Vulnerability
KEV EPSS 96% Splunk Enterprise |
CVE-2026-20253 |
| 06-18 | Azure |
[Launched] Generally Available: ICMP Support for Azure Standard V2 NAT Gateway
Azure
StandardV2 NAT Gateway now supports outbound ICMP Echo Request and Echo Reply
traffic, enabling customers to use tools such … |
— |
| 06-18 | Cisco PSIRT |
Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability
A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate pri… |
CVE-2026-20246 |
| 06-18 | Cisco PSIRT |
Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability
A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, rem… |
CVE-2026-20220 |
| 06-18 | Cisco PSIRT |
Cisco Webex App Open Redirect Vulnerability
A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect… |
CVE-2026-20178 |
| 06-17 | Cisco PSIRT |
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
EPSS 88% A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN M… |
CVE-2026-20127 |
| 06-17 | Cisco PSIRT |
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
EPSS 90% May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after … |
CVE-2026-20182 |
| 06-16 | Fortinet News |
Fortinet Launches FortiSOC, a Unified SOC Platform Powered by Agentic AI
Fortinet announced the general availability of FortiSOC, a unified, cloud-delivered security operations center (SOC) platform powe… |
— |
| 06-16 | CISA KEV |
CVE-2026-48907 Widget Factory Joomla Content Editor Improper Access Control Vulnerability
KEV EPSS 83% Widget Factory Joomla Content Editor |
CVE-2026-48907 |
| 06-16 | M365 |
Microsoft Copilot (Microsoft 365): People Skills- removal and deletion admin control
A new admin control in the People Skills settings lets administrators permanently remove their organization's People Skills data f… |
— |
| 06-16 | Cisco PSIRT |
Cisco Catalyst SD-WAN Manager Arbitrary File Write Vulnerability
KEV EPSS 28% A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote atta… |
CVE-2026-20262 |
| 06-15 | CISA KEV |
CVE-2026-54420 LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability
KEV EPSS 1% LiteSpeed cPanel Plugin |
CVE-2026-54420 |
| 06-15 | CISA KEV |
CVE-2026-20262 Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability
KEV EPSS 28% Cisco Catalyst SD-WAN Manager |
CVE-2026-20262 |
| 06-12 | CISA KEV |
CVE-2026-35273 Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability
KEV ランサム EPSS 94% Oracle PeopleSoft Enterprise PeopleTools |
CVE-2026-35273 |
| 06-12 | Azure |
Retirement: Av2-series, F-series, Fs-series, Fsv2-series, G-series, Gs-series, and Lsv2-series Virtual Machines for Azure Batch pools
Azure Compute will retire the following Virtual Machine series on November 15, 2028, impacting Azure Batch pools that rely on them… |
— |
| 06-12 | Azure |
Retirement: D-series, Ds-series, Dv2-series, Dsv2-series, and Ls-series Virtual Machines for Azure Batch pools
Azure Compute will retire the following Virtual Machine series on May 1, 2028, impacting Azure Batch pools that rely on them:D-ser… |
— |
| 06-12 | Azure |
Retirement: Azure Load Balancer Inbound NAT rule version 1 for Azure VMSS (aka Inbound NAT Pools)
Update to our previous communication: We previously
announced the retirement of all Inbound NAT rules version 1 resources, which
i… |
— |
| 06-11 | CISA KEV |
CVE-2026-10520 Ivanti Sentry OS Command Injection Vulnerability
KEV EPSS 100% Ivanti Sentry |
CVE-2026-10520 |
| 06-11 | Azure |
[Launched] Generally Available: Microsoft Entra server principals on Azure SQL Database
Microsoft Entra server principals (logins) for Azure SQL Database is now generally available. You can now use CREATE LOGIN ... FRO… |
— |
| 06-11 | Azure |
Retirement: Azure VPN Client for Linux (Preview) will be retired on August 31, 2026
The Azure VPN Client for Linux (Preview) has remained in public preview and does not have a path to general availability (GA). As … |
— |
| 06-10 | JPCERT | 注意喚起: Adobe AcrobatおよびReaderの脆弱性(APSB26-63)に関する注意喚起 (公開) | — |
| 06-10 | JPCERT | 注意喚起: 2026年6月マイクロソフトセキュリティ更新プログラムに関する注意喚起 (公開) | — |
| 06-10 | JPCERT | 注意喚起: Check Point Software Technologies社製品における認証バイパスの脆弱性(CVE-2026-50751)に関する注意喚起 (公開) EPSS 83% |
CVE-2026-50751 |
| 06-10 | Azure |
[In preview] Public Preview: Agent mode for GitHub Copilot in SQL Server Management Studio (SSMS)
You can now use Agent mode for GitHub Copilot in SSMS to work with your database: investigating performance problems, tuning queri… |
— |
| 06-09 | Fortinet PSIRT |
Improper access control in API endpoints
CVSSv3 Score:
6.2
An improper access control vulnerability [CWE-284] in FortiPortal API endpoints may allow a remote privile… |
— |
| 06-09 | Fortinet PSIRT |
Restricted CLI escape using Lua
CVSSv3 Score:
6.0
An Internal Asset Exposed to Unsafe Debug Access Level or State vulnerability [CWE-1244] in FortiOS and Fo… |
— |
| 06-09 | Fortinet PSIRT |
Second-Order OS Command Injection via JSON Input on start vnc feature
CVSSv3 Score:
9.1
An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiSandbo… |
— |
| 06-09 | CISA KEV |
CVE-2026-11645 Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
KEV EPSS 2% Google Chromium V8 |
CVE-2026-11645 |
| 06-09 | CISA KEV |
CVE-2026-7473 Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability
KEV EPSS 1% Arista Extensible Operating System |
CVE-2026-7473 |
| 06-09 | CISA KEV |
CVE-2026-20245 Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability
KEV EPSS 25% Cisco Catalyst SD-WAN Manager |
CVE-2026-20245 |
| 06-09 | Azure |
[Launched] Generally Available: Azure NC RTX PRO 6000 Blackwell Server Edition v6 Series Virtual Machines
Azure NCv6-series virtual machines (VMs) are now generally available in the Azure Southeast Asia and West US 2 regions. NCv6 VMs a… |
— |
| 06-08 | CISA KEV |
CVE-2026-42271 BerriAI LiteLLM Command Injection Vulnerability
KEV EPSS 83% BerriAI LiteLLM |
CVE-2026-42271 |
| 06-04 | Cisco PSIRT |
Cisco Webex Meetings Cross-Site Scripting Vulnerability
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to … |
CVE-2026-20233 |
| 06-03 | Fortinet PSIRT |
Linux Kernel vulnerability Dirty Frag
EPSS 93% CVSSv3 Score:
7.9
Linux kernel is impacted by CVE-2026-43284 and CVE-2026-43500 which chained together create the Dirty Frag… |
CVE-2026-43284 CVE-2026-43500 |
| 06-02 | M365 |
Microsoft 365 admin center: Organizational Data – Granular access policy controls for custom attributes
We are introducing enhanced access policy management for Organizational Data in Microsoft 365. This update enables admins to relea… |
— |
| 05-28 | Outbreak |
Citrix NetScaler Memory Overread Vulnerability
EPSS 78% Exploitation activity targeting vulnerable Citrix NetScaler ADC and Gateway appliances remains persistent and widespread, with For… |
CVE-2026-3055 |
コピーしました
