Bulletins

CISA (ALL)
07/30/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or potentially execute arbitrary code.

The following versions of o6 Automation open62541 are affected:

  • open62541 on Windows and Linux >=from_1.3.0|<=1.3.17 (CVE-2026-63362, CVE-2026-65423, CVE-2026-63035, CVE-2026-63559)
BOSCH PSIRT
07/30/2026

BOSCH-SA-943700: Multiple vulnerabilities have been identified affecting the OpenSSH service configured within BSH ELP (Electronic Platform) modules. BSH Hausgeräte GmbH is a Bosch Group brand company. These modules are utilized across various connected home appliances (such as Bosch, Siemens, Gaggenau, and Neff). The vulnerabilities include a critical signal handler race …

CISA (ALL)
07/29/2026

CISA, the National Security Agency, the Federal Bureau of Investigation, and international partners released joint guidance, 2026 Minimum Elements for a Software Bill of Materials (SBOM), that updates and replaces the minimum elements for an SBOM published by the National Telecommunications and Information Administration (NTIA) in 2021. The new …

CISA (ALL)
07/28/2026

View CSAF

Summary

OpenSSL has published a stack based buffer overflow vulnerability that allows a remote attacker to cause a denial of service (DoS) or potentially allow for remote code execution. Siemens has released new versions for several affected products and recommends to update to the latest versions. …

CISA (ALL)
07/28/2026
CI Fortify – Advice for isolating vital systems

CISA and the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC), in collaboration with the Federal Bureau of Investigation and international partners, released joint guidance CI Fortify – Advice for isolating vital systems. This guidance contains practical steps for critical …
CISA (ALL)
07/28/2026

View CSAF

Summary

ABB has been contacted by a researcher who identified a vulnerability in one of its products. ABB has been contacted by a researcher who identified a vulnerability in one of its products. The vulnerability report has been shared in responsible disclosure. An attacker who successfully …

CISA (ALL)
07/28/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an unauthorized actor to access functions or backend services.

The following versions of igloohome Smart Lock Mobile Application are affected:

  • Smart Lock Mobile Application (Android) 3.2.3 (CVE-2026-16581)
CVSS
CISA (ALL)
07/28/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow attackers to rapidly guess passwords and gain unauthorized system access.

The following versions of MikroTik RouterOS and Cloud Hosted Router are affected:

  • RouterOS vers:all/* (CVE-2026-16347)
  • Cloud Hosted Router vers:all/* (CVE-2026-16347)