Primary Feed– 脆弱性と製品・サービスの一次情報 –

直近14日のアクティビティ(日別件数) 脆弱性製品・サービス
7/14 脆弱性 15件 / 製品 3件 7/14 脆弱性 15件 / 製品 3件 7/15 脆弱性 3件 / 製品 3件 7/15 脆弱性 3件 / 製品 3件 7/15 7/16 脆弱性 6件 / 製品 3件 7/16 脆弱性 6件 / 製品 3件 7/17 脆弱性 1件 / 製品 3件 7/17 脆弱性 1件 / 製品 3件 7/17 7/18 脆弱性 0件 / 製品 1件 7/19 7/20 脆弱性 0件 / 製品 2件 7/21 脆弱性 6件 / 製品 6件 7/21 脆弱性 6件 / 製品 6件 7/21 7/22 脆弱性 3件 / 製品 14件 7/22 脆弱性 3件 / 製品 14件 7/23 脆弱性 14件 / 製品 12件 7/23 脆弱性 14件 / 製品 12件 7/23 7/24 脆弱性 0件 / 製品 12件 7/25 脆弱性 0件 / 製品 5件 7/25 7/27
表示 200 件 / 13ソース / 07-27 06:06 取得 おすすめチャンスKEVEPSSはてブHN
日付ソース内容CVE
07-25 AWS Amazon MWAA now supports Apache Airflow version 2.11.2 NEW
Amazon Managed Workflows for Apache Airflow (MWAA) now supports Apache Airflow version 2.11.2. Amazon MWAA is a managed service th…
07-25 AWS Amazon EC2 Dedicated Hosts now support host resource groups without self-managed licenses NEW
Starting today, customers can create Host Resource Groups (HRGs) for EC2 Dedicated Hosts without the previously required step of c…
07-25 Cisco Blogs Antares and the Partner Opportunity: Local, Efficient, Trusted AI for Security NEW はてブ 1
Cisco just launched Antares — open-weight small language models that localize known vulnerabilities inside your own infrastructure…
07-25 AWS AWS Lambda now publishes logs for Lambda Managed Instances capacity providers NEW
AWS Lambda now publishes logs for Lambda Managed Instances (LMI) capacity providers to Amazon CloudWatch Logs, giving you visibili…
07-25 Cisco Blogs The Journey towards Logically Air-Gapped Deployment NEW はてブ 1
Achieve digital autonomy in critical infra with a 'logically air-gapped' model using eBPF, Cilium, and Cisco for secure, compliant…
07-24 AWS Amazon ECS Service Connect now supports Zone-Aware routing NEW
Amazon Elastic Container Service (Amazon ECS) introduces zone-aware routing for ECS Service Connect, enabling customers to re…
07-24 AWS Amazon RDS for MySQL supports MySQL 9.7 in Amazon RDS Database Preview Environment NEW
Amazon RDS for MySQL now supports version community MySQL 9.7 in the Amazon RDS Database Preview Environment, allowing y…
07-24 Cisco Blogs From One Desk to the Whole Enterprise: Making Local AI Resilient NEW はてブ 1
This is a breakthrough moment for enterprise AI. Leaner models, an open and ready software stack, and powerful hardware like AMD R…
07-24 Cisco Blogs One Million Learners: Scaling Digital Skills and Inclusion in Nigeria NEW
Where digital skills are key to unlocking vast opportunities in an AI-enabled future, Cisco Networking Academy is playing a transf…
07-24 AWS Amazon Bedrock AgentCore now delivers unified observability with traces and logs in a single log group NEW
Amazon Bedrock AgentCore now delivers agent traces and prompts to the same log group as your agent's logs, giving you unified obse…
07-24 AWS Amazon CloudWatch Logs now supports Application Load Balancer logs NEW はてブ 1
Amazon CloudWatch Logs now supports Application Load Balancer (ALB) logs as vended logs, improving observability and simplifying d…
07-24 AWS Amazon EC2 I8ge instances are now generally available in additional AWS regions NEW
Amazon Web Services (AWS) announces the availability of Amazon EC2 I8ge instances in AWS Europe (London) and Canada (Central)&nbsp…
07-24 Azure [In preview] Public Preview: Azure DDoS Protection custom policy NEW
Azure DDoS Protection custom policy is now in public preview. This capability provides per-resource control over DDoS mitigation t…
07-24 AWS Amazon EVS is now available in additional Regions NEW
Today, we're announcing that Amazon Elastic VMware Service (Amazon EVS) is now available in the Asia Pacific (Seoul), Europe (Zuri…
07-24 AWS Announcing region expansion of G7e instances on SageMaker AI inference NEW
We are pleased to announce the availability of Amazon EC2 G7e instances in Asia Pacific (Seoul), Europe (London), and Asia Pacific…
07-24 Cisco Blogs Cisco Firewall Migration Manager: A Faster, Simpler, More Confident Path to Secure Firewall NEW
Cisco Firewall Migration Manager brings predictable timelines, resilient workflows, and multi-migration management to your move to…
07-24 Cisco Blogs Why AI inference is becoming a networking issue NEW
An AI prompt is a distributed flow across networks, GPUs, and AI fabrics. A new white paper from Cisco, "A Day in the Life of a Pr…
07-23 AWS Announcing region expansion of G6 instances on SageMaker AI Inference NEW
We are pleased to announce the availability of Amazon EC2 G6 instances in the AWS GovCloud (US-East) region on Amazon SageMaker AI…
07-23 AWS AWS Wickr announces Data Retention Service feature NEW
AWS Wickr now offers a managed Data Retention Service feature for Premium users, enabling organizations to retain conversations ac…
07-23 JPCERT Weekly Report: WordPressにリモートコード実行につながる脆弱性 NEW
WordPressにリモートコード実行につながる脆弱性
07-23 JPCERT Weekly Report: Google Chromeに複数の脆弱性 NEW
Google Chromeに複数の脆弱性
07-23 JPCERT Weekly Report: VMware Avi Load Balancerに複数の脆弱性 NEW
VMware Avi Load Balancerに複数の脆弱性
07-23 JPCERT Weekly Report: 複数のSplunk製品に脆弱性 NEW
複数のSplunk製品に脆弱性
07-23 JPCERT Weekly Report: 複数のCisco製品に脆弱性 NEW
複数のCisco製品に脆弱性
07-23 JPCERT Weekly Report: Drupal coreに複数の脆弱性 NEW
Drupal coreに複数の脆弱性
07-23 JPCERT Weekly Report: 複数のZoom製品に脆弱性 NEW
複数のZoom製品に脆弱性
07-23 JPCERT Weekly Report: SonicWallのSMA1000シリーズに複数の脆弱性 NEW
SonicWallのSMA1000シリーズに複数の脆弱性
07-23 JPCERT Weekly Report: 複数のFortinet製品に脆弱性 NEW
複数のFortinet製品に脆弱性
07-23 JPCERT Weekly Report: 複数のSAP製品に脆弱性 NEW
複数のSAP製品に脆弱性
07-23 JPCERT Weekly Report: Firefoxに複数の脆弱性 NEW
Firefoxに複数の脆弱性
07-23 JPCERT Weekly Report: 複数のAdobe製品に脆弱性 NEW
複数のAdobe製品に脆弱性
07-23 JPCERT Weekly Report: JPCERT/CCが2026年4月から6月分の「JPCERT/CC 四半期レポート」を公開 NEW
JPCERT/CCが2026年4月から6月分の「JPCERT/CC 四半期レポート」を公開
07-23 JPCERT Weekly Report: 複数のマイクロソフト製品に脆弱性 NEW
複数のマイクロソフト製品に脆弱性
07-23 OpenAI Launching Health in ChatGPT NEW HN 31
Health in ChatGPT now lets eligible U.S. users securely connect medical records and Apple Health to get more personalized insights…
07-23 AWS Amazon EC2 High Memory U7i instances now available in additional regions NEW
Amazon EC2 High Memory U7in-16TB instances (u7in-16tb.224xlarge) are now available in AWS South America (São Paulo) region, and U7…
07-23 AWS Amazon EC2 C7a instances are now available in the US West (N. California) Region NEW
Starting today, the compute optimized Amazon EC2 C7a instances are now available in AWS US West (N. California) Region. C7a instan…
07-23 AWS Amazon EC2 M8a instances now available in the Asia Pacific (Hyderabad) region NEW
Starting today, the general-purpose Amazon EC2 M8a instances are available in AWS Asia Pacific (Hyderabad) region. M8a instances a…
07-23 AWS Amazon EC2 M8id instances are now available in Europe (Ireland) region NEW
Amazon EC2 M8id instances are now available in (Ireland). These instances are powered by custom Intel Xeon 6 processors and delive…
07-23 AWS AWS Network Load Balancer now supports Listener Rules for custom traffic routing NEW はてブ 1
Network Load Balancer (NLB) now supports listener rules allowing you to route connections to different target groups based on the …
07-23 AWS Amazon Corretto July 2026 Quarterly Updates NEW
On July 22, 2026, Amazon announced quarterly security and critical updates for Amazon Corretto Long-Term Support (LTS) and Feature…
07-23 Cisco Blogs How Cisco architected AI-driven support and validated against industry benchmarks NEW はてブ 1
Discover how Cisco transformed customer support into a context-aware, in-product experience that now reaches more than 250,000 use…
07-23 Gemini Here’s how to ask Gemini Live for help with anything you see. NEW
Have you ever struggled to describe something you’re looking at? Whether it’s a complex manual, a blinking error code, or a unique…
07-23 AWS Amazon SageMaker AI inference now supports G7 instances NEW
Amazon SageMaker AI inference now supports G7 instances powered by NVIDIA RTX PRO 4500 Blackwell Server Edition GPUs, enabling you…
07-22 AWS Amazon EKS now supports EFA and placement groups on Amazon EKS Auto Mode and Karpenter NEW はてブ 1
Amazon Elastic Kubernetes Service (EKS) now supports Amazon EC2 placement groups and Elastic Fabric Adapter (EFA) network device c…
07-22 Cisco Blogs In the AI Era, Cyber Defense Needs a New Playbook NEW はてブ 1
AI is changing the speed of cyber risk. Cisco’s executive brief outlines how organizations need to move from current operating mod…
07-22 Cisco Blogs Tech for the Modern Warfighter: Cisco at DoDIIS 2026 NEW
Join Cisco at DoDIIS 2026 in Tampa to explore AI-driven infrastructure and security innovations. Discover how we empower the defen…
07-22 OpenAI Building AI infrastructure with the Effingham County community NEW
OpenAI announces Project Camellia in Effingham County, Georgia, with commitments to responsible energy, community investment, jobs…
07-22 OpenAI How news organizations are using AI to advance their vital missions NEW
News organizations are using AI to strengthen reporting, grow audiences, and improve business operations, with OpenAI tools suppor…
07-22 Gemini 3 Google updates from Galaxy Unpacked 2026 NEW はてブ 1
We shared how Samsung users can boost productivity and get time back on new foldables, watches, and glasses coming soon.
07-22 OpenAI Advancing the next era of national science NEW
OpenAI outlines its commitment to advancing American science working with the U.S. Department of Energy and national labs to use f…
07-22 OpenAI Introducing OpenAI Presence NEW HN 64
Introducing OpenAI Presence, a proven enterprise AI agent platform that helps organizations deploy trusted voice and chat agents f…
07-22 CISA KEV CVE-2026-16232 Check Point SmartConsole Improper Authentication Vulnerability ◎おすすめ チャンス NEW KEV EPSS 13%
Check Point SmartConsole
CVE-2026-16232
07-22 CISA KEV CVE-2026-50522 Microsoft SharePoint Deserialization of Untrusted Data Vulnerability ◎おすすめ NEW KEV EPSS 57%
Microsoft SharePoint
CVE-2026-50522
07-22 OpenAI NTT DATA Group cuts incident analysis to 30 minutes with Codex NEW
NTT DATA Group uses ChatGPT Enterprise and Codex to help 9,000 employees automate work, cut incident analysis to 30 minutes, and s…
07-22 M365 Microsoft Purview: Data Loss Prevention - Data Security for non-Microsoft connected apps NEW
Microsoft Purview Data Loss Prevention and Information Protection Auto-labeling capabilities now extend to non-Microsoft connected…
07-22 Windows Announcing Windows 11 Insider Preview Build 28120.2546 for Experimental (26H1) NEW
Hello Windows Insiders, Today we're releasing build 28120.2546 for the Experimental (26H1) channel. Release notes can be found ove…
07-22 Gemini 13 Google tips for a fun, productive summer off from college NEW
Discover how college students can use Google AI tools, like Gemini and AI Mode, to prep for grad school, internships and fall cour…
07-22 OpenAI Introducing the ChatGPT for small business program NEW
OpenAI launches the ChatGPT for Small Businesses program, helping entrepreneurs build AI skills, automate work, and grow with Chat…
07-22 Cisco PSIRT Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability ◎おすすめ NEW KEV EPSS 90%
A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD…
CVE-2026-20182
CVE-2026-20127
CVE-2026-20245
07-22 Gemini Introducing Gemini 3.6 Flash, 3.5 Flash-Lite, and 3.5 Flash Cyber NEW はてブ 44
We’re introducing new Gemini models, including Gemini 3.6 Flash, 3.5 Flash-Lite and 3.5 Flash Cyber.
07-21 Fortinet News Intel and Fortinet Collaborate to Advance Cybersecurity Innovation and Strengthen Global Supply Chain Resilience NEW
Intel and Fortinet announced a strategic collaboration to develop Fortinet Security Processor 6 (SP6).
07-21 Outbreak Palo Alto Networks PAN-OS GlobalProtect Auth Bypass ◎おすすめ NEW EPSS 94%
Attackers are actively exploiting a PAN-OS GlobalProtect authentication bypass vulnerability to gain unauthorized VPN access to ex…
CVE-2026-0257
07-21 OpenAI OpenAI and Hugging Face partner to address security incident during model evaluation NEW はてブ 1
OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capa…
07-21 CISA KEV CVE-2026-60137 WordPress Core SQL Injection Vulnerability ◎おすすめ NEW KEV はてブ 2 EPSS 78%
WordPress Core
CVE-2026-60137
07-21 CISA KEV CVE-2026-63030 WordPress Core Interpretation Conflict Vulnerability ◎おすすめ NEW KEV はてブ 2 EPSS 98%
WordPress Core
CVE-2026-63030
07-21 CISA KEV CVE-2026-0770 Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability ◎おすすめ チャンス NEW KEV EPSS 53%
Langflow Langflow
CVE-2026-0770
07-21 CISA KEV CVE-2021-27137 DD-WRT Stack-Based Buffer Overflow Vulnerability ◎おすすめ チャンス NEW KEV EPSS 16%
DD-WRT DD-WRT
CVE-2021-27137
07-21 OpenAI David Vélez and Robin Vince join the boards of the OpenAI Foundation and OpenAI Group PBC NEW
David Vélez and Robin Vince join the boards of the OpenAI Foundation and OpenAI Group PBC, bringing global leadership in finance, …
07-21 M365 Microsoft Teams: Unified Agent and App Installation Management Across Microsoft 365 and Teams Admin Center NEW
Administrators using the Microsoft 365 admin center and Teams admin center will be able to apply app and agent installation change…
07-21 Windows Announcing new builds for 20 July 2026 NEW
Hello Windows Insiders, Today we are releasing new Windows 11 Insider Preview Builds across Beta, Experimental and Release Preview…
07-21 Gemini 5 ways to build a side hustle with Gemini NEW
Launching a side business? Use Gemini to design your side hustle, conduct market research and automate logistics.
07-21 Cisco PSIRT Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities NEW
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals could allow a…
CVE-2025-20204
CVE-2025-20205
07-20 Azure [Launched] Generally Available: IPv6 support for Azure VPN Gateway NEW
IPv6 support for Azure VPN Gateway enables customers to run IPv6 inner traffic through VPN tunnels in a dual‑stack configuration. …
07-20 OpenAI Safety and alignment in an era of long-horizon models NEW はてブ 1
OpenAI shares lessons from deploying long-running AI models, highlighting new safety risks, observed failures, and improved safegu…
07-18 Azure [Launched] Generally Available: Azure Functions support for Python 3.14
You can now develop functions using Python 3.14 locally and deploy them to Azure Functions plans on Linux. Upgrade your apps to Py…
07-17 Azure [Launched] Generally Available: Microsoft Defender security assessments for Azure Database for PostgreSQL Flexible Server
Microsoft Defender Cloud Security Posture Management (CSPM) assessments for Azure Database for PostgreSQL Flexible Server are now …
07-17 OpenAI A scorecard for the AI age
Sarah Friar, CFO of OpenAI, introduces a practical AI scorecard to measure ROI through useful work, cost per successful task, depe…
07-17 Outbreak Joomla SP Page Builder RCE ◎おすすめ チャンス KEV EPSS 88%
FortiGuard Labs continues to observe active exploitation of CVE-2026-48908, a critical unauthenticated remote code execution vulne…
CVE-2026-48908
07-17 OpenAI Why teens deserve access to safe AI
Learn how OpenAI is making ChatGPT safer for teens with age-appropriate protections, learning tools, parental controls, and expert…
07-16 OpenAI How Codex became a collaborator for OpenAI’s creative team
How OpenAI’s creative team uses Codex to build custom creative tools, accelerate ideation, and prototype faster with context-aware…
07-16 CISA KEV CVE-2026-58644 Microsoft SharePoint Deserialization of Untrusted Data Vulnerability KEV EPSS 5%
Microsoft SharePoint
CVE-2026-58644
07-16 CISA KEV CVE-2026-25089 Fortinet FortiSandbox OS Command Injection Vulnerability KEV EPSS 70%
Fortinet FortiSandbox
CVE-2026-25089
07-16 CISA KEV CVE-2026-39808 Fortinet FortiSandbox OS Command Injection Vulnerability KEV EPSS 90%
Fortinet FortiSandbox
CVE-2026-39808
07-16 OpenAI How Cars24 scales conversations and builds faster with OpenAI
Cars24 uses OpenAI-powered voice and chat agents to handle 1M+ monthly conversation minutes, recover 12% of lost leads, and bring …
07-16 Azure [Launched] Generally Available: Expanding Azure Arc SQL Migration with SQL Server on Azure Virtual Machines
The Azure Arc migration solution now supports SQL Server on Azure Virtual Machines as a migration target. Arc-enabled SQL Server i…
07-16 Cisco PSIRT Cisco Advance Notification for Publication of July 15, 2026, Security Advisories
On July 15, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security …
CVE-2026-20150
CVE-2026-20153
CVE-2026-20156
ほか 4 件
07-16 Cisco PSIRT Cisco RoomOS Security Hardening Release: July 2026
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a…
CVE-2026-20150
CVE-2026-20153
CVE-2026-20156
ほか 3 件
07-16 Cisco PSIRT Cisco Identity Services Engine Path Traversal Vulnerability
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenti…
CVE-2026-20146
07-15 OpenAI The US is advancing AI safety through state and federal action
OpenAI outlines a “reverse federalism” approach to AI governance, where state laws help build a national framework for safe, democ…
07-15 JPCERT 注意喚起: 2026年7月マイクロソフトセキュリティ更新プログラムに関する注意喚起 (公開)
07-15 CISA KEV CVE-2026-46817 Oracle E-Business Suite Improper Privilege Management Vulnerability KEV EPSS 13%
Oracle E-Business Suite
CVE-2026-46817
07-15 CISA KEV CVE-2023-4346 KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability チャンス KEV EPSS 1%
KNX Association KNX Protocol Connection Authorization Option 1
CVE-2023-4346
07-15 M365 Microsoft Teams: Teams events attendance and engagement report policy
Teams events will soon have a separate attendance and engagement report policy from the "CsTeamsMeetingPolicy" attendance and enga…
07-15 Azure [In preview] Public Preview: Azure Front Door edge actions
Announcing the public preview of Azure Front Door edge actions (serverless compute at the edge).With edge actions, customers can e…
07-14 Fortinet News Fortinet Expands FortiEndpoint with New Capabilities for the AI Era
New innovations delivered through one agent, one console, and one license help security teams safely enable AI adoption, strengthe…
07-14 Fortinet PSIRT Buffer overread in authd and wad daemon
CVSSv3 Score: 4.1 A buffer over-read vulnerability [CWE-126] in FortiOS, FortiProxy, and FortiSASE may allow an authenticate…
07-14 Fortinet PSIRT Cross-Site Scripting in Domain parameter
CVSSv3 Score: 5.3 An Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability [CWE-80] in…
07-14 Fortinet PSIRT Header injection in Web Filter warning page
CVSSv3 Score: 3.4 An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CW…
07-14 Fortinet PSIRT Header injection in captive portal authentication form
CVSSv3 Score: 3.1 An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') vulnerability [CW…
07-14 Fortinet PSIRT Missed certificate verification in AD Connector communication with FortiClient EMS
CVSSv3 Score: 6.7 An Improper Certificate Validation vulnerability [CWE-295] in FortiClient EMS may allow a remote unauthent…
07-14 Fortinet PSIRT Out of bounds read in GUI
CVSSv3 Score: 7.0 An out of bounds read [CWE-125] vulnerability in FortiAuthenticator may allow a remote unauthenticated att…
07-14 Fortinet PSIRT Path traversal in CLI command allows deletion of root file system
CVSSv3 Score: 5.0 An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE-22] i…
07-14 Fortinet PSIRT SSL-VPN Reflected XSS
CVSSv3 Score: 6.1 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability [CWE…
07-14 Fortinet PSIRT Stack Buffer Overflow in Log Report
CVSSv3 Score: 5.9 A Stack-based Buffer Overflow vulnerability [CWE-121] in FortiOS, FortiProxy and FortiPAM may allow a priv…
07-14 Fortinet PSIRT Supers override fails to properly override supervisor address
CVSSv3 Score: 6.9 An Improper Restriction of Communication Channel to Intended Endpoints [CWE-923] vulnerability in FortiSIE…
07-14 Fortinet PSIRT Unauthenticated VNC access exposed on all interfaces
CVSSv3 Score: 7.7 An Exposure of Resource to Wrong Sphere vulnerability [CWE-668] in FortiSandbox may allow an unauthenticat…
07-14 Gemini How Gemini is speaking the language of Southeast Asia
Gemini is taking off across Southeast Asia, thanks to its local language fluency and the region’s mobile-first population.
07-14 CISA KEV CVE-2026-56155 Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability KEV EPSS 2%
Microsoft Active Directory Federation Services
CVE-2026-56155
07-14 CISA KEV CVE-2026-56164 Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability KEV EPSS 18%
Microsoft SharePoint Server
CVE-2026-56164
07-14 CISA KEV CVE-2026-15409 SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability KEV EPSS 78%
SonicWall SMA1000 Appliances
CVE-2026-15409
07-14 CISA KEV CVE-2026-15410 SonicWall SMA1000 Appliances Code Injection Vulnerability KEV EPSS 76%
SonicWall SMA1000 Appliances
CVE-2026-15410
07-14 Windows Improving Windows Search Box, with less clutter and more control
Hello Windows Insiders, You’ve been asking for search that is faster, more relevant, and easier to use—whether you’re opening an a…
07-13 CISA KEV CVE-2008-4128 Cisco IOS Cross-Site Request Forgery Vulnerability チャンス KEV EPSS 33%
Cisco IOS
CVE-2008-4128
07-11 Azure Retirement: Support for Python-2.7; 3.8 and PowerShell- 7.1; 7.2 will be retired on September 30, 2026
Starting October 1, 2026, the specified runtime versions Python 2.7, Python 3.8, and PowerShell 7.1 & 7.2. will no longer be suppo…
07-11 Gemini Here’s how to make study notebooks in the Gemini app.
Studying for a test, but not sure where to start? Study notebooks, a new feature in the Gemini app, can help you get organized and…
07-10 CISA KEV CVE-2026-56291 Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability KEV EPSS 76%
Balbooa Forms
CVE-2026-56291
07-10 CISA KEV CVE-2026-48939 iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability KEV EPSS 24%
iCagenda iCagenda
CVE-2026-48939
07-10 Windows Evolving Windows vulnerability management to meet the speed of AI-powered discovery
Windows has adapted to emerging threats for decades, all while operating at unparalleled scale. It's our responsibility to bring c…
07-09 Gemini 3 ways this coffee shop is growing with Gemini
Small businesses like coffee shops can use Gemini to save time on graphic design, email marketing and sales forecasting.
07-08 Azure [In preview] Public Preview: Exceptions in WAF for Azure Application Gateway and Azure Front Door
Azure Web Application Firewall (WAF) helps protect your web applications from common threats and attacks. In some cases, WAF may b…
07-08 Azure [Launched] Generally Available: Network Security Perimeter support for Azure Event Hubs
Azure Event Hubs now supports Network Security Perimeter (NSP), enabling organizations to define a logical network isolation bound…
07-08 Azure [Launched] Generally Available: Azure Red Hat OpenShift in Chile Central
Azure Red Hat OpenShift (ARO) is now generally available in Azure Chile Central, expanding regional availability for OpenShift dep…
07-08 Windows New in Edge for developers – Style layout gaps, improve keyboard accessibility and migrate your PWA to a new origin
Welcome to New in Edge for developers, a new series featuring recent web platform updates in Microsoft Edge that help web develope…
07-07 Outbreak Ivanti Sentry OS Command Injection Vulnerability KEV EPSS 100%
FortiGuard Labs continues to observe exploitation attempts targeting CVE-2026-10520 following the public release of technical deta…
CVE-2026-10520
07-07 CISA KEV CVE-2026-48908 JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability チャンス KEV EPSS 88%
JoomShaper SP Page Builder
CVE-2026-48908
07-07 CISA KEV CVE-2026-55255 Langflow Authorization Bypass Through User-Controlled Key Vulnerability KEV EPSS 29%
Langflow Langflow
CVE-2026-55255
07-07 CISA KEV CVE-2026-56290 Joomlack Page Builder Improper Access Control Vulnerability KEV EPSS 83%
Joomlack Page Builder
CVE-2026-56290
07-07 CISA KEV CVE-2026-48282 Adobe ColdFusion Path Traversal Vulnerability KEV EPSS 99%
Adobe ColdFusion
CVE-2026-48282
07-07 Windows Announcing new builds for July 6 2026
Hello Windows Insiders, We have new releases today with builds across Beta and Experimental. New builds this week Today we are rel…
07-07 Cisco PSIRT Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities EPSS 1%
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a …
CVE-2026-20181
CVE-2026-20190
07-07 Azure [Launched] Generally Available: Microsoft Entra ID-based access for Azure Blob Storage SFTP
Microsoft Entra ID-based access for Azure Blob Storage SFTP is now generally available in all regions. You can now use Entra ID id…
07-06 Cisco PSIRT Cisco Catalyst Center Arbitrary File Read Vulnerability EPSS 1%
A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted…
CVE-2026-20191
07-06 Outbreak Langflow Unauth RCE Attack
FortiGuard Labs has observed a significant uptick in attacks targeting Langflow, leveraging a recently discovered authentication b…
07-03 Cisco PSIRT ClamAV Vulnerabilities Affecting Cisco Products: July 2026 EPSS 1%
Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanni…
CVE-2026-20213
CVE-2026-20214
CVE-2026-20215
ほか 4 件
07-02 Fortinet News Fortinet to Announce Second Quarter 2026 Financial Results
07-02 Gemini The latest AI news we announced in June 2026
Here are Google’s latest AI updates from June 2026.
07-02 Cisco PSIRT Cisco Advance Notification for Publication of July 1, 2026, Security Advisories EPSS 1%
On July 1, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the following advisories: Cisco Security A…
CVE-2026-20191
CVE-2026-20216
CVE-2026-20213
ほか 5 件
07-02 Cisco PSIRT Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability KEV EPSS 81%
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management E…
CVE-2026-20230
07-01 CISA KEV CVE-2026-45659 Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability KEV EPSS 9%
Microsoft SharePoint Server
CVE-2026-45659
07-01 Gemini Gemini Spark updates: macOS launch, connected apps and more
The latest Gemini Spark updates brings Spark to the macOS app, connects with your favorite apps and tracks topics in real time.
07-01 Gemini Start building with Nano Banana 2 Lite and Gemini Omni Flash
Scale your ideas with Nano Banana 2 Lite, our fastest, most cost-efficient Gemini Image model, and Gemini Omni Flash for high-qual…
06-30 Gemini The Gemini app is bringing personalized image creation to more users.
Personal Intelligence makes the Gemini app feel tailored to you. With your permission, it pulls from Google tools like Gmail, Goog…
06-30 Windows Elder Scrolls Online introduces new in-game event: High Seas of Tamriel
Fans of PC favorite Elder Scrolls Online can look forward to a new in-game event: the High Seas of Tamriel, which XBOX Wire’s Mike…
06-30 Gemini Gemini can now take notes in Google Meet for Google AI Pro and Ultra subscribers.
Google Meet's "Take notes for me" feature is available to Google AI Pro and Ultra subscribers in select languages.
06-29 CISA KEV CVE-2026-48558 SimpleHelp Authentication Bypass Vulnerability KEV EPSS 11%
SimpleHelp SimpleHelp
CVE-2026-48558
06-27 Windows Announcing new builds for 26 June 2026, retail launch of new WIP improvements
Hello Windows Insiders, We have new releases today with builds across Beta and Experimental, and are excited to begin rolling out …
06-27 Gemini Here's how Gemini can help you avoid jetlag.
If you’ve got a faraway trip coming up, the Gemini app can help you avoid jetlag so you can make the most of your visit.Once you’v…
06-26 Gemini Try these 3 Google AI tools to help find your next job.
Use Google AI tools — like Career Dreamer, NotebookLM and Gemini Live — for resumes, cover letters, interview prep and more.
06-25 Cisco PSIRT Cisco Finesse Remote File Inclusion Vulnerability
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations int…
CVE-2026-20175
06-25 CISA KEV CVE-2026-12569 PTC Windchill and FlexPLM Improper Input Validation Vulnerability KEV ランサム EPSS 2%
PTC Windchill and FlexPLM
CVE-2026-12569
06-25 CISA KEV CVE-2026-20230 Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability KEV EPSS 81%
Cisco Unified Communications Manager
CVE-2026-20230
06-25 Azure [In preview] Public Preview: Application Gateway for Containers – Inference gateway
Application Gateway for Containers is extending its ingress gateway feature set with new AI gateway capabilities. The new inferenc…
06-25 Fortinet News Fortinet Appoints Public Sector Leader and Tech Executive Derek Kan to Its Board of Directors
Fortinet announces the appointment of Derek Kan to its board of directors, further strengthening company's board with distinguishe…
06-25 Windows Age of Empires Mobile: PC Edition now available
Great news for players of Age of Empires Mobile! The game is now available on Steam and the Microsoft Store for PCs. Players who’v…
06-24 M365 Microsoft Viva: Insights for GitHub Copilot spend and usage
AI spend and usage insights for GitHub Copilot will be available on Viva Insights for managers with at least 5 direct reports (sco…
06-23 JPCERT 注意喚起: Fortinet製品に関連する認証情報の漏えいに関する注意喚起 (公開)
06-23 CISA KEV CVE-2025-67038 Lantronix EDS5000 Code Injection Vulnerability KEV EPSS 14%
Lantronix EDS5000
CVE-2025-67038
06-23 CISA KEV CVE-2026-34910 Ubiquiti UniFi OS Improper Input Validation Vulnerability KEV EPSS 87%
Ubiquiti UniFi OS
CVE-2026-34910
06-23 CISA KEV CVE-2026-34909 Ubiquiti UniFi OS Path Traversal Vulnerability KEV EPSS 57%
Ubiquiti UniFi OS
CVE-2026-34909
06-23 CISA KEV CVE-2026-34908 Ubiquiti UniFi OS Improper Access Control Vulnerability KEV EPSS 58%
Ubiquiti UniFi OS
CVE-2026-34908
06-23 M365 Microsoft Teams: Block all identified external bots automatically from joining your meetings
Extending the admin controls provided for managing external AI bots and regulating their access to your meetings, we are adding th…
06-23 Cisco PSIRT Cisco Packaged Contact Center Enterprise and Cisco Unified Contact Center Enterprise Cross-Site Scripting Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Packaged Contact Center Enterprise (Packaged CCE) and Cisc…
CVE-2026-20055
CVE-2026-20109
06-20 Windows Announcing new builds for 19 June 2026, version 26H2 for Experimental
Hello Windows Insiders, We have new releases today with builds across Beta and Experimental, including Windows 11, version 26H2 fo…
06-19 Outbreak HTTP/2 Bomb Denial-of-Service Vulnerability EPSS 28%
Security researchers have disclosed a new denial-of-service (DoS) attack technique dubbed HTTP/2 Bomb, tracked as CVE-2026-49975, …
CVE-2026-49975
06-18 CISA KEV CVE-2026-20253 Splunk Enterprise Missing Authentication for Critical Function Vulnerability KEV EPSS 96%
Splunk Enterprise
CVE-2026-20253
06-18 Azure [Launched] Generally Available: ICMP Support for Azure Standard V2 NAT Gateway
Azure StandardV2 NAT Gateway now supports outbound ICMP Echo Request and Echo Reply traffic, enabling customers to use tools such …
06-18 Cisco PSIRT Cisco Umbrella Virtual Appliance Privilege Escalation Vulnerability
A vulnerability in the vmadmin CLI of Cisco Umbrella Virtual Appliance could allow an authenticated, local attacker to elevate pri…
CVE-2026-20246
06-18 Cisco PSIRT Cisco Crosswork Network Controller Server-Side Template Injection Vulnerability
A vulnerability in the web-based management interface of Cisco Crosswork Network Controller could allow an authenticated, rem…
CVE-2026-20220
06-18 Cisco PSIRT Cisco Webex App Open Redirect Vulnerability
A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect…
CVE-2026-20178
06-17 Cisco PSIRT Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability EPSS 88%
A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN M…
CVE-2026-20127
06-17 Cisco PSIRT Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability EPSS 90%
May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after …
CVE-2026-20182
06-16 Fortinet News Fortinet Launches FortiSOC, a Unified SOC Platform Powered by Agentic AI
Fortinet announced the general availability of FortiSOC, a unified, cloud-delivered security operations center (SOC) platform powe…
06-16 CISA KEV CVE-2026-48907 Widget Factory Joomla Content Editor Improper Access Control Vulnerability KEV EPSS 83%
Widget Factory Joomla Content Editor
CVE-2026-48907
06-16 M365 Microsoft Copilot (Microsoft 365): People Skills- removal and deletion admin control
A new admin control in the People Skills settings lets administrators permanently remove their organization's People Skills data f…
06-16 Cisco PSIRT Cisco Catalyst SD-WAN Manager Arbitrary File Write Vulnerability KEV EPSS 28%
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote atta…
CVE-2026-20262
06-15 CISA KEV CVE-2026-54420 LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability KEV EPSS 1%
LiteSpeed cPanel Plugin
CVE-2026-54420
06-15 CISA KEV CVE-2026-20262 Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability KEV EPSS 28%
Cisco Catalyst SD-WAN Manager
CVE-2026-20262
06-12 CISA KEV CVE-2026-35273 Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability KEV ランサム EPSS 94%
Oracle PeopleSoft Enterprise PeopleTools
CVE-2026-35273
06-12 Azure Retirement: Av2-series, F-series, Fs-series, Fsv2-series, G-series, Gs-series, and Lsv2-series Virtual Machines for Azure Batch pools
Azure Compute will retire the following Virtual Machine series on November 15, 2028, impacting Azure Batch pools that rely on them…
06-12 Azure Retirement: D-series, Ds-series, Dv2-series, Dsv2-series, and Ls-series Virtual Machines for Azure Batch pools
Azure Compute will retire the following Virtual Machine series on May 1, 2028, impacting Azure Batch pools that rely on them:D-ser…
06-12 Azure Retirement: Azure Load Balancer Inbound NAT rule version 1 for Azure VMSS (aka Inbound NAT Pools)
Update to our previous communication: We previously announced the retirement of all Inbound NAT rules version 1 resources, which i…
06-11 CISA KEV CVE-2026-10520 Ivanti Sentry OS Command Injection Vulnerability KEV EPSS 100%
Ivanti Sentry
CVE-2026-10520
06-11 Azure [Launched] Generally Available: Microsoft Entra server principals on Azure SQL Database
Microsoft Entra server principals (logins) for Azure SQL Database is now generally available. You can now use CREATE LOGIN ... FRO…
06-11 Azure Retirement: Azure VPN Client for Linux (Preview) will be retired on August 31, 2026
The Azure VPN Client for Linux (Preview) has remained in public preview and does not have a path to general availability (GA). As …
06-10 JPCERT 注意喚起: Adobe AcrobatおよびReaderの脆弱性(APSB26-63)に関する注意喚起 (公開)
06-10 JPCERT 注意喚起: 2026年6月マイクロソフトセキュリティ更新プログラムに関する注意喚起 (公開)
06-10 JPCERT 注意喚起: Check Point Software Technologies社製品における認証バイパスの脆弱性(CVE-2026-50751)に関する注意喚起 (公開) EPSS 83% CVE-2026-50751
06-10 Azure [In preview] Public Preview: Agent mode for GitHub Copilot in SQL Server Management Studio (SSMS)
You can now use Agent mode for GitHub Copilot in SSMS to work with your database: investigating performance problems, tuning queri…
06-09 Fortinet PSIRT Improper access control in API endpoints
CVSSv3 Score: 6.2 An improper access control vulnerability [CWE-284] in FortiPortal API endpoints may allow a remote privile…
06-09 Fortinet PSIRT Restricted CLI escape using Lua
CVSSv3 Score: 6.0 An Internal Asset Exposed to Unsafe Debug Access Level or State vulnerability [CWE-1244] in FortiOS and Fo…
06-09 Fortinet PSIRT Second-Order OS Command Injection via JSON Input on start vnc feature
CVSSv3 Score: 9.1 An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiSandbo…
06-09 CISA KEV CVE-2026-11645 Google Chromium V8 Out-of-Bounds Read and Write Vulnerability KEV EPSS 2%
Google Chromium V8
CVE-2026-11645
06-09 CISA KEV CVE-2026-7473 Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability KEV EPSS 1%
Arista Extensible Operating System
CVE-2026-7473
06-09 CISA KEV CVE-2026-20245 Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability KEV EPSS 25%
Cisco Catalyst SD-WAN Manager
CVE-2026-20245
06-09 Azure [Launched] Generally Available: Azure NC RTX PRO 6000 Blackwell Server Edition v6 Series Virtual Machines
Azure NCv6-series virtual machines (VMs) are now generally available in the Azure Southeast Asia and West US 2 regions. NCv6 VMs a…
06-08 CISA KEV CVE-2026-42271 BerriAI LiteLLM Command Injection Vulnerability KEV EPSS 83%
BerriAI LiteLLM
CVE-2026-42271
06-04 Cisco PSIRT Cisco Webex Meetings Cross-Site Scripting Vulnerability
A vulnerability in the web-based user interface of Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to …
CVE-2026-20233
06-03 Fortinet PSIRT Linux Kernel vulnerability Dirty Frag EPSS 93%
CVSSv3 Score: 7.9 Linux kernel is impacted by CVE-2026-43284 and CVE-2026-43500 which chained together create the Dirty Frag…
CVE-2026-43284
CVE-2026-43500
06-02 M365 Microsoft 365 admin center: Organizational Data – Granular access policy controls for custom attributes
We are introducing enhanced access policy management for Organizational Data in Microsoft 365. This update enables admins to relea…
05-28 Outbreak Citrix NetScaler Memory Overread Vulnerability EPSS 78%
Exploitation activity targeting vulnerable Citrix NetScaler ADC and Gateway appliances remains persistent and widespread, with For…
CVE-2026-3055
コピーしました