Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Vendors Address Critical Security Vulnerabilities in Software

Vendors Address Critical Security Vulnerabilities in Software

Posted on March 11, 2026 By CWS

Recent developments in cybersecurity have seen numerous vendors rolling out updates to fix critical vulnerabilities in their software and network devices. These updates are crucial for maintaining the integrity and security of enterprise systems.

SAP Releases Critical Security Updates

SAP has issued patches for two significant vulnerabilities that could allow for arbitrary code execution on compromised systems. The flaws, identified as CVE-2019-17571 and CVE-2026-27685, have been rated with high CVSS scores of 9.8 and 9.1, respectively. These vulnerabilities affect SAP Quotation Management Insurance and SAP NetWeaver Enterprise Portal Administration applications.

According to SAP’s security firm Onapsis, the first vulnerability involves outdated Apache Log4j components, potentially enabling remote code execution by attackers. The second flaw is due to inadequate validation during the deserialization of data, posing risks of malicious content uploads.

Microsoft and Adobe Address Multiple Vulnerabilities

In parallel, Microsoft has released patches for 84 vulnerabilities, encompassing privilege escalation and remote code execution issues across its product range. Adobe also patched 80 vulnerabilities, including critical ones in Adobe Commerce and Magento Open Source, which could lead to privilege escalation and security feature bypass.

Additionally, Adobe addressed five critical flaws in Adobe Illustrator, aiming to thwart potential arbitrary code execution attacks.

Hewlett Packard Enterprise Tackles Aruba Network Flaws

Hewlett Packard Enterprise (HPE) has rectified five vulnerabilities in its Aruba Networking AOS-CX systems. The most severe issue, CVE-2026-23813, involves an authentication bypass in the management interface, carrying a CVSS score of 9.8.

Ross Filipek, CISO at Corsica Technologies, highlighted the risks associated with this vulnerability, noting that it could allow attackers to gain control over network devices, thereby compromising entire network systems undetected.

Additional Vendors Respond to Security Challenges

A wide array of vendors, including ABB, Amazon Web Services, AMD, and others, have also deployed patches to address various vulnerabilities. These efforts underscore the importance of proactive security measures in today’s interconnected digital landscape.

From software giants like Google and Mozilla to hardware manufacturers like Intel and NVIDIA, the industry’s response to emerging threats is critical. Keeping systems up-to-date with the latest security patches remains a vital component of organizational cybersecurity strategies.

As cyber threats continue to evolve, organizations must remain vigilant in applying timely updates to safeguard their digital assets and infrastructures.

The Hacker News Tags:Adobe security, CVE, Cybersecurity, enterprise software, HPE Aruba, network security, patch management, SAP vulnerabilities, security updates, software vulnerabilities

Post navigation

Previous Post: OpenAI Expands AI Security with Promptfoo Acquisition
Next Post: Bell Ambulance Data Breach Affects 238,000 Individuals

Related Posts

Stealthy Python Backdoor Targets Cloud Credentials Stealthy Python Backdoor Targets Cloud Credentials The Hacker News
GopherWhisper Attacks Mongolian Government with Go Malware GopherWhisper Attacks Mongolian Government with Go Malware The Hacker News
Oracle Resolves Critical RCE Vulnerability in Identity Manager Oracle Resolves Critical RCE Vulnerability in Identity Manager The Hacker News
AI-Driven Cyber Attacks Surge in 2025 AI-Driven Cyber Attacks Surge in 2025 The Hacker News
Fortra Releases Critical Patch for CVSS 10.0 GoAnywhere MFT Vulnerability Fortra Releases Critical Patch for CVSS 10.0 GoAnywhere MFT Vulnerability The Hacker News
AI Tools Fuel Threat Actor’s Breach of 600 FortiGate Devices AI Tools Fuel Threat Actor’s Breach of 600 FortiGate Devices The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Leading Phishing Kits Exploit Microsoft 365 in Cyberattacks
  • Critical Security Update for JetBrains TeamCity Users
  • AI Uncovers Cryptographic Flaws Overlooked by Experts
  • Claude AI Unveils Breakthrough in Cryptanalysis
  • Google Ads Misused to Spread MacSync Infostealer via Fake Claude Guide

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Leading Phishing Kits Exploit Microsoft 365 in Cyberattacks
  • Critical Security Update for JetBrains TeamCity Users
  • AI Uncovers Cryptographic Flaws Overlooked by Experts
  • Claude AI Unveils Breakthrough in Cryptanalysis
  • Google Ads Misused to Spread MacSync Infostealer via Fake Claude Guide

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark