Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
CISA released an advisory on vulnerabilities in Siemens Mendix Runtime, a low-code application development platform. The flaws could allow authentication bypass and unauthorized data access.
Delta Electronics DVP series programmable logic controllers contain CVE-2026-52393, an input validation vulnerability that could crash devices and cause denial of service conditions.
CISA added CVE-2025-4427 and CVE-2025-4428 affecting Ivanti Endpoint Manager Mobile to the KEV catalog following evidence of active exploitation by state-sponsored threat actors.
CISA reported CVE-2026-52394 affecting Siemens SICAM A8000 series Remote Terminal Units used in critical infrastructure, with Siemens actively developing firmware patches.
CISA published an advisory on high-severity vulnerabilities in the ABB KNX Update Tool for building automation systems. Successful exploitation could allow arbitrary code execution on building management infrastructure.
CI Fortify – Advice for isolating vital systems CI Fortify – Advice for isolating vital systems (PDF)CISA and the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC), in collaboration with the Federal Bureau of Investigation and international partners, released joint...