Bulletins

CISA (ALL)
09/17/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow unauthorized access to telemetry data and firmware.

The following versions of Bransys ELD are affected:

  • Android <11.00.00 (CVE-2026-86520, CVE-2026-86689, CVE-2026-77960)
  • iOS <1.1.54 (CVE-2026-86520, CVE-2026-86689, CVE-2026-77960)
CVSS Vendor
CISA (ALL)
09/17/2026

View CSAF

Summary

Schneider Electric is aware of multiple vulnerabilities in its NetBotz 5 – 750/755 products.The NetBotz 5 – 750/755 products are security and environmental monitors providing temperature, humidity, leak, smoke, vibration, door contact, and video monitoring capabilities. Failure to apply the remediation provided below may risk …

CISA (ALL)
09/17/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow a local attacker to successfully authenticate even with an invalid block password by executing the affected product and modify part of the executable module in memory, and thereby allows the attacker to view, tamper with, destroy, or delete …

CISA (ALL)
09/17/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker with access to the same network segment to tamper with communication data in the affected product by sending specially crafted packets under specific timing conditions. This could allow the attacker to cause a denial-of-service (DoS) condition …

CISA (ALL)
09/17/2026

View CSAF

Summary

Hitachi Energy is aware of vulnerabilities that affect the FACTS Control systems with GWS component listed in this document. An attacker exploiting these vulnerabilities can cause impact on confidentiality, integrity and availability of the product. Following FACTS Control systems with GWS component deployed from year …

CISA (ALL)
09/16/2026

CISA developed this guidance to help defensive teams at varying levels of cybersecurity maturity plan and implement cyber decoy strategies that strengthen their detection and response capabilities. Many organizations struggle to detect adversaries who use legitimate credentials, native tools, and living off the land (LOTL) techniques to conduct discovery, …

SIEMENS CERT
09/16/2026
The products listed below contain a denial of service vulnerability that could allow an attacker to force the devices into protection mode under certain conditions. This disables remote connectivity functions (Web Access) to the devices. Siemens has released new versions for the affected products and recommends to update to the …
CISA (ALL)
09/15/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to deliver an unauthorized update, execute code, or extract credentials to allow the attacker to impersonate a privileged client.

The following versions of Wärtsilä FOS-Onboard are affected:

  • FOS-Onboard 5.07.0923.01 (CVE-2026-78225, CVE-2026-81855)