Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Vendors Address Critical Security Vulnerabilities in Software

Vendors Address Critical Security Vulnerabilities in Software

Posted on March 11, 2026 By CWS

Recent developments in cybersecurity have seen numerous vendors rolling out updates to fix critical vulnerabilities in their software and network devices. These updates are crucial for maintaining the integrity and security of enterprise systems.

SAP Releases Critical Security Updates

SAP has issued patches for two significant vulnerabilities that could allow for arbitrary code execution on compromised systems. The flaws, identified as CVE-2019-17571 and CVE-2026-27685, have been rated with high CVSS scores of 9.8 and 9.1, respectively. These vulnerabilities affect SAP Quotation Management Insurance and SAP NetWeaver Enterprise Portal Administration applications.

According to SAP’s security firm Onapsis, the first vulnerability involves outdated Apache Log4j components, potentially enabling remote code execution by attackers. The second flaw is due to inadequate validation during the deserialization of data, posing risks of malicious content uploads.

Microsoft and Adobe Address Multiple Vulnerabilities

In parallel, Microsoft has released patches for 84 vulnerabilities, encompassing privilege escalation and remote code execution issues across its product range. Adobe also patched 80 vulnerabilities, including critical ones in Adobe Commerce and Magento Open Source, which could lead to privilege escalation and security feature bypass.

Additionally, Adobe addressed five critical flaws in Adobe Illustrator, aiming to thwart potential arbitrary code execution attacks.

Hewlett Packard Enterprise Tackles Aruba Network Flaws

Hewlett Packard Enterprise (HPE) has rectified five vulnerabilities in its Aruba Networking AOS-CX systems. The most severe issue, CVE-2026-23813, involves an authentication bypass in the management interface, carrying a CVSS score of 9.8.

Ross Filipek, CISO at Corsica Technologies, highlighted the risks associated with this vulnerability, noting that it could allow attackers to gain control over network devices, thereby compromising entire network systems undetected.

Additional Vendors Respond to Security Challenges

A wide array of vendors, including ABB, Amazon Web Services, AMD, and others, have also deployed patches to address various vulnerabilities. These efforts underscore the importance of proactive security measures in today’s interconnected digital landscape.

From software giants like Google and Mozilla to hardware manufacturers like Intel and NVIDIA, the industry’s response to emerging threats is critical. Keeping systems up-to-date with the latest security patches remains a vital component of organizational cybersecurity strategies.

As cyber threats continue to evolve, organizations must remain vigilant in applying timely updates to safeguard their digital assets and infrastructures.

The Hacker News Tags:Adobe security, CVE, Cybersecurity, enterprise software, HPE Aruba, network security, patch management, SAP vulnerabilities, security updates, software vulnerabilities

Post navigation

Previous Post: OpenAI Expands AI Security with Promptfoo Acquisition
Next Post: Bell Ambulance Data Breach Affects 238,000 Individuals

Related Posts

TP-Link Router Flaw CVE-2023-33538 Under Active Exploit, CISA Issues Immediate Alert TP-Link Router Flaw CVE-2023-33538 Under Active Exploit, CISA Issues Immediate Alert The Hacker News
Identity: The New Cyberattack Vector Identity: The New Cyberattack Vector The Hacker News
Bloody Wolf Expands Java-based NetSupport RAT Attacks in Kyrgyzstan and Uzbekistan Bloody Wolf Expands Java-based NetSupport RAT Attacks in Kyrgyzstan and Uzbekistan The Hacker News
How to Browse the Web More Sustainably With a Green Browser How to Browse the Web More Sustainably With a Green Browser The Hacker News
Malicious Rust Crate Delivers OS-Specific Malware to Web3 Developer Systems Malicious Rust Crate Delivers OS-Specific Malware to Web3 Developer Systems The Hacker News
OpenAI Faces Supply Chain Cyberattack: macOS Updates Needed OpenAI Faces Supply Chain Cyberattack: macOS Updates Needed The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • GitHub’s NPM 12 Blocks Script Execution to Enhance Security
  • China-Linked JDY Botnet Expands to Over 1,500 Devices
  • GitHub to Restrict npm Scripts by Default to Enhance Security
  • Critical Flaw in Splunk Enterprise Enables Unauthorized Code Execution
  • BugHunter Toolkit Enhances Vulnerability Detection

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • GitHub’s NPM 12 Blocks Script Execution to Enhance Security
  • China-Linked JDY Botnet Expands to Over 1,500 Devices
  • GitHub to Restrict npm Scripts by Default to Enhance Security
  • Critical Flaw in Splunk Enterprise Enables Unauthorized Code Execution
  • BugHunter Toolkit Enhances Vulnerability Detection

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark