BOSCH-SA-943700: Multiple vulnerabilities have been identified affecting the OpenSSH service configured within BSH ELP (Electronic Platform) modules. BSH Hausgeräte GmbH is a Bosch Group brand company. These modules are utilized across various connected home appliances (such as Bosch, Siemens, Gaggenau, and Neff). The vulnerabilities include a critical signal handler race …
CISA, the National Security Agency, the Federal Bureau of Investigation, and international partners released joint guidance, 2026 Minimum Elements for a Software Bill of Materials (SBOM), that updates and replaces the minimum elements for an SBOM published by the National Telecommunications and Information Administration (NTIA) in 2021. The new …
Summary
Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant). Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
…Summary
Successful exploitation of this vulnerability could allow an unauthorized actor to access functions or backend services.
The following versions of igloohome Smart Lock Mobile Application are affected:
- Smart Lock Mobile Application (Android) 3.2.3 (CVE-2026-16581)
| CVSS | … |
|---|
Summary
SIMATIC S7-PLCSIM Advanced contains a vulnerability that could allow an attacker to cause a denial of service condition. Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.
The following versions of Siemens SIMATIC S7-PLCSIM …
Summary
Successful exploitation of this vulnerability could allow attackers to rapidly guess passwords and gain unauthorized system access.
The following versions of MikroTik RouterOS and Cloud Hosted Router are affected:
- RouterOS vers:all/* (CVE-2026-16347)
- Cloud Hosted Router vers:all/* (CVE-2026-16347)
Summary
OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected products and recommends to update to the latest versions. …