Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Vendors Address Critical Security Vulnerabilities in Software

Vendors Address Critical Security Vulnerabilities in Software

Posted on March 11, 2026 By CWS

Recent developments in cybersecurity have seen numerous vendors rolling out updates to fix critical vulnerabilities in their software and network devices. These updates are crucial for maintaining the integrity and security of enterprise systems.

SAP Releases Critical Security Updates

SAP has issued patches for two significant vulnerabilities that could allow for arbitrary code execution on compromised systems. The flaws, identified as CVE-2019-17571 and CVE-2026-27685, have been rated with high CVSS scores of 9.8 and 9.1, respectively. These vulnerabilities affect SAP Quotation Management Insurance and SAP NetWeaver Enterprise Portal Administration applications.

According to SAP’s security firm Onapsis, the first vulnerability involves outdated Apache Log4j components, potentially enabling remote code execution by attackers. The second flaw is due to inadequate validation during the deserialization of data, posing risks of malicious content uploads.

Microsoft and Adobe Address Multiple Vulnerabilities

In parallel, Microsoft has released patches for 84 vulnerabilities, encompassing privilege escalation and remote code execution issues across its product range. Adobe also patched 80 vulnerabilities, including critical ones in Adobe Commerce and Magento Open Source, which could lead to privilege escalation and security feature bypass.

Additionally, Adobe addressed five critical flaws in Adobe Illustrator, aiming to thwart potential arbitrary code execution attacks.

Hewlett Packard Enterprise Tackles Aruba Network Flaws

Hewlett Packard Enterprise (HPE) has rectified five vulnerabilities in its Aruba Networking AOS-CX systems. The most severe issue, CVE-2026-23813, involves an authentication bypass in the management interface, carrying a CVSS score of 9.8.

Ross Filipek, CISO at Corsica Technologies, highlighted the risks associated with this vulnerability, noting that it could allow attackers to gain control over network devices, thereby compromising entire network systems undetected.

Additional Vendors Respond to Security Challenges

A wide array of vendors, including ABB, Amazon Web Services, AMD, and others, have also deployed patches to address various vulnerabilities. These efforts underscore the importance of proactive security measures in today’s interconnected digital landscape.

From software giants like Google and Mozilla to hardware manufacturers like Intel and NVIDIA, the industry’s response to emerging threats is critical. Keeping systems up-to-date with the latest security patches remains a vital component of organizational cybersecurity strategies.

As cyber threats continue to evolve, organizations must remain vigilant in applying timely updates to safeguard their digital assets and infrastructures.

The Hacker News Tags:Adobe security, CVE, Cybersecurity, enterprise software, HPE Aruba, network security, patch management, SAP vulnerabilities, security updates, software vulnerabilities

Post navigation

Previous Post: OpenAI Expands AI Security with Promptfoo Acquisition
Next Post: Bell Ambulance Data Breach Affects 238,000 Individuals

Related Posts

Cracked Software and YouTube Videos Spread CountLoader and GachiLoader Malware Cracked Software and YouTube Videos Spread CountLoader and GachiLoader Malware The Hacker News
AI Agents Act Like Employees With Root Access—Here’s How to Regain Control AI Agents Act Like Employees With Root Access—Here’s How to Regain Control The Hacker News
A New Security Layer for macOS Takes Aim at Admin Errors Before Hackers Do A New Security Layer for macOS Takes Aim at Admin Errors Before Hackers Do The Hacker News
PyPI Blocks 1,800 Expired-Domain Emails to Prevent Account Takeovers and Supply Chain Attacks PyPI Blocks 1,800 Expired-Domain Emails to Prevent Account Takeovers and Supply Chain Attacks The Hacker News
Earth Ammit Breached Drone Supply Chains via ERP in VENOM, TIDRONE Campaigns Earth Ammit Breached Drone Supply Chains via ERP in VENOM, TIDRONE Campaigns The Hacker News
Fire Ant Exploits VMware Flaws to Compromise ESXi Hosts and vCenter Environments Fire Ant Exploits VMware Flaws to Compromise ESXi Hosts and vCenter Environments The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI-Powered Threats Demand New Boardroom Strategies
  • Enhancing Early Threat Detection in SOCs with Limited Staff
  • Wiz Enhances Google Cloud’s Security in $32B Acquisition
  • Meta Shuts Down 150K Accounts in Global Anti-Scam Effort
  • Microsoft Enhances Windows 11 with March 2026 Updates

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI-Powered Threats Demand New Boardroom Strategies
  • Enhancing Early Threat Detection in SOCs with Limited Staff
  • Wiz Enhances Google Cloud’s Security in $32B Acquisition
  • Meta Shuts Down 150K Accounts in Global Anti-Scam Effort
  • Microsoft Enhances Windows 11 with March 2026 Updates

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News