Bulletins

SIEMENS CERT
08/11/2026
Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update to the latest versions.
SIEMENS CERT
08/11/2026
Insyde has published information on vulnerabilities in Insyde BIOS in February 2022. This advisory lists the Siemens Industrial products affected by these vulnerabilities. Siemens has released new versions for the affected products and recommends to update to the latest versions.
CISA (ALL)
08/10/2026

Advisory at a Glance

Title #StopRansomware: Gunra Ransomware
Original Publication August 10, 2026
Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared …
CISA (ALL)
08/07/2026

View CSAF

Summary

ATN-B1 CPDLC relies on legacy clear text unauthenticated radio frequency links. Research demonstrates that these characteristics allow unauthorized message injection, denial-of-service conditions, and forced session resets. These vulnerabilities do not constitute an unsafe aircraft condition but can degrade operational safety margins by increasing workload, delaying …

CISA (ALL)
08/06/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to access sensitive information on the device.

The following versions of Johnson Controls Inc. TL280 are affected:

  • TL280 <5.63 
CVSS Vendor Equipment Vulnerabilities
CISA (ALL)
08/06/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow attackers to bypass security, crash systems, execute unauthorized actions, or compromise data.

The following versions of ABB Ability Zenon are affected:

  • IIoT services with MongoDB (4.2) installed on ABB Ability Zenon vers:all/* 
CISA (ALL)
08/06/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to cause the application to crash if a maliciously crafted DICOM file is opened.

The following versions of Medixant RadiAnt DICOM are affected:

  • RadiAnt DICOM <=2025.2
CVSS
CISA (ALL)
08/04/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to perform unauthorized vehicle control operations.

The following versions of Acrisure KARR BT and DR-100 are affected:

  • KARR BT firmware <July_20_2026
  • DR-100 firmware <July_20_2026
CVSS