Bulletins

CISA (ALL)
07/28/2026
CI Fortify – Advice for isolating vital systems

CISA and the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC), in collaboration with the Federal Bureau of Investigation and international partners, released joint guidance CI Fortify – Advice for isolating vital systems. This guidance contains practical steps for critical …
CISA (ALL)
07/28/2026

View CSAF

Summary

Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant). Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.

CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of this vulnerability could result in an attacker obtaining confidential information from the device.

The following versions of Johnson Controls XAAP Android are affected:

  • XAAP Android <1.53
CVSS Vendor Equipment Vulnerabilities
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of this vulnerability could cause the parsing process to crash, which will cause a denial of service.

The following versions of MZ Automation lib60870 are affected:

  • lib60870 <=2.4.0
CVSS Vendor Equipment
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker with network access to achieve remote code execution.

The following versions of Johnson Controls C-CURE 9000 and Victor application server are affected:

  • C-CURE 9000 and victor <=v2.90_v3.0 
  • victor Web <=v7.1 
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an unauthenticated network-adjacent attacker to crash critical IEC 61850 services or execute arbitrary code, disrupting or compromising protection, visibility, and control functions.

The following versions of MZ Automation libIEC61850 are affected:

  • libIEC61850 >=v1.0.0|<=v1.6.1 
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow a non-privileged user to escalate privileges or view the credentials of other users.

The following versions of Weintek cMT3092X are affected:

  • cMT3092X firmware <20210218 
  • EasyWeb <v2.1.20
CVSS
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker with access to the IT network to manipulate industrial control devices without requiring physical access, specialized insider knowledge, or advanced tooling.

The following versions of Panduit IntraVUE are affected:

  • IntraVUE <=3.2.1a14