Bulletins

CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to access critical data or execute arbitrary code.

The following versions of Toptech TMS7 and TopHAT are affected:

  • TMS7 7.6.3 (CVE-2026-71379, CVE-2026-70356, CVE-2026-72510, CVE-2026-63713, CVE-2026-68954, CVE-2026-68068, CVE-2026-72507, CVE-2026-71302, CVE-2026-69662, CVE-2026-71189)
  • TopHAT 7.6.3 …
CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of this vulnerability may allow attackers to achieve remote command execution on affected devices, potentially with root privileges, leading to full compromise of the camera system.

The following versions of VIVOTEK Camera Firmware are affected:

  • V Series model_FD9187 (CVE-2026-22755)
  • …
CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to access sensitive information, access user accounts, execute OS-level commands, or take full control over the device.

The following versions of Anjvision YSSD-RTMP-H5 are affected:

  • YSSD-RTMP-H5 firmware 3.3.2.4_build_2024-12-26 (CVE-2026-100291, CVE-2026-100292, CVE-2026-100293, CVE-2026-100294, CVE-2026-100295, …
CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow attackers to access, modify, or delete sensitive user data and critical system files, potentially compromising the operation of the entire platform.

The following versions of Viidure Dashcam Android Application are affected:

  • Dashcam Android Application <=3.3.1.260403 …
CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to inject malformed messages which may lead to a denial-of-service condition.

The following versions of Baicells Nova 430H are affected:

  • Nova 430H eNodeB (model pBS3101SH) <=BaiBLQ_3.0.12 (CVE-2026-96274)
…
CISA (ALL)
09/29/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to replace software and execute arbitrary code with root privileges.

The following versions of Lantronix G520 Series Cellular Gateway are affected:

  • G520 Series 2.6.0.4R6_stable (CVE-2026-84409, CVE-2026-91191)
…
CVSS
SIEMENS CERT
09/28/2026
Mendix Studio Pro contains a vulnerability in the module installation process, that could allow an attacker to write or modify arbitrary files in directories outside a developer’s project directory. Siemens has released new versions for the affected products and recommends to update to the latest versions.
CISA (ALL)
09/27/2026

CISA is amplifying Citrix’s disclosure of eight new vulnerabilities affecting Citrix NetScaler ADC and Citrix NetScaler Gateway products: CVE-2026-88771, CVE-2026-88772, CVE-2026-88773, CVE-2026-88774, CVE-2026-88775, CVE-2026-88776, CVE-2026-88777, and CVE-2026-88778. 

CISA has added CVE-2026-88771 and CVE-2026-88772 to its Known Exploited Vulnerabilities (KEV) Catalog. …