Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Vendors Address Critical Security Vulnerabilities in Software

Vendors Address Critical Security Vulnerabilities in Software

Posted on March 11, 2026 By CWS

Recent developments in cybersecurity have seen numerous vendors rolling out updates to fix critical vulnerabilities in their software and network devices. These updates are crucial for maintaining the integrity and security of enterprise systems.

SAP Releases Critical Security Updates

SAP has issued patches for two significant vulnerabilities that could allow for arbitrary code execution on compromised systems. The flaws, identified as CVE-2019-17571 and CVE-2026-27685, have been rated with high CVSS scores of 9.8 and 9.1, respectively. These vulnerabilities affect SAP Quotation Management Insurance and SAP NetWeaver Enterprise Portal Administration applications.

According to SAP’s security firm Onapsis, the first vulnerability involves outdated Apache Log4j components, potentially enabling remote code execution by attackers. The second flaw is due to inadequate validation during the deserialization of data, posing risks of malicious content uploads.

Microsoft and Adobe Address Multiple Vulnerabilities

In parallel, Microsoft has released patches for 84 vulnerabilities, encompassing privilege escalation and remote code execution issues across its product range. Adobe also patched 80 vulnerabilities, including critical ones in Adobe Commerce and Magento Open Source, which could lead to privilege escalation and security feature bypass.

Additionally, Adobe addressed five critical flaws in Adobe Illustrator, aiming to thwart potential arbitrary code execution attacks.

Hewlett Packard Enterprise Tackles Aruba Network Flaws

Hewlett Packard Enterprise (HPE) has rectified five vulnerabilities in its Aruba Networking AOS-CX systems. The most severe issue, CVE-2026-23813, involves an authentication bypass in the management interface, carrying a CVSS score of 9.8.

Ross Filipek, CISO at Corsica Technologies, highlighted the risks associated with this vulnerability, noting that it could allow attackers to gain control over network devices, thereby compromising entire network systems undetected.

Additional Vendors Respond to Security Challenges

A wide array of vendors, including ABB, Amazon Web Services, AMD, and others, have also deployed patches to address various vulnerabilities. These efforts underscore the importance of proactive security measures in today’s interconnected digital landscape.

From software giants like Google and Mozilla to hardware manufacturers like Intel and NVIDIA, the industry’s response to emerging threats is critical. Keeping systems up-to-date with the latest security patches remains a vital component of organizational cybersecurity strategies.

As cyber threats continue to evolve, organizations must remain vigilant in applying timely updates to safeguard their digital assets and infrastructures.

The Hacker News Tags:Adobe security, CVE, Cybersecurity, enterprise software, HPE Aruba, network security, patch management, SAP vulnerabilities, security updates, software vulnerabilities

Post navigation

Previous Post: OpenAI Expands AI Security with Promptfoo Acquisition
Next Post: Bell Ambulance Data Breach Affects 238,000 Individuals

Related Posts

XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks The Hacker News
How to Integrate AI into Modern SOC Workflows How to Integrate AI into Modern SOC Workflows The Hacker News
Apple Urges iOS Update to Combat Exploit Kit Threats Apple Urges iOS Update to Combat Exploit Kit Threats The Hacker News
FCC Bans Foreign-Made Drones and Key Parts Over U.S. National Security Risks FCC Bans Foreign-Made Drones and Key Parts Over U.S. National Security Risks The Hacker News
Webworm Uses Discord and MS Graph for New Backdoors Webworm Uses Discord and MS Graph for New Backdoors The Hacker News
Microsoft 365 Android Apps Vulnerability Allows Token Theft Microsoft 365 Android Apps Vulnerability Allows Token Theft The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Langflow Security Flaw Enables Unauthenticated Access
  • Agentjacking Exploits AI Tools to Execute Malicious Code
  • Ivanti, Fortinet, SAP Address Critical Security Flaws
  • GitHub’s NPM 12 Blocks Script Execution to Enhance Security
  • China-Linked JDY Botnet Expands to Over 1,500 Devices

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Langflow Security Flaw Enables Unauthenticated Access
  • Agentjacking Exploits AI Tools to Execute Malicious Code
  • Ivanti, Fortinet, SAP Address Critical Security Flaws
  • GitHub’s NPM 12 Blocks Script Execution to Enhance Security
  • China-Linked JDY Botnet Expands to Over 1,500 Devices

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark