Security news
Latest security news
Tue, 8 Sept 2026
- SAP security advisory – September 2026 monthly rollup (AV26-894)
Serial Number: AV26-894 Date: September 8, 2026 As of September 8, 2026, SAP_SE is affected by vulnerabilities in the following products: SAP Extended Passport (EPP) Processing – KRNL64NUC 7.22, 7.22EXT, KRNL64UC 7.22, 7.22EXT, 7.53, 8.04, WEBDISP 9.16, 9.18, 9.19, 9.20, KERNEL 7.22, 7.53, 7.54, 7.77, 7.89, 7.93, 8.04, 9.16, 9.18, 9.19 and 9.20 SAP NetWeaver (Message Server) - versions KERNEL 9.16, 9.18, 9.19, and 9.20 SAP Cloud Application Programming Model (CAP) prior or equal to 1.183 prior or equal to 2.7.6 prior or equal to 3.9.6 prior or equal to 4.0.2 SAP NetWeaver (SAP GUI for Java) - version BC-FES-JAV 8.10 SAP Integration Suite Version Cloud Integration - Trading Partner Management V2 2.9.2, Version B2B Integration Factory - Cloud Integration - Trading Partner Management 1.10.0 SAP NetWeaver Business Client – versions BC-WD-CLT-BUS 8.00 and 8.10 SAP NetWeaver Application Server for ABAP and ABAP Platform – versions KRNL64NUC 7.22, 7.22EXT, KRNL64UC 7.22, 7.22EXT, 7.53, 8.04, KERNEL 7.22, 7.53, 7.54, 7.77, 7.93, 8.04, 9.16, 9.18, 9.19 and 9.20 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become
Canadian Centre for Cyber SecuritySAP - Windows 11 cumulative updates KB5124008 & KB5122880 released
Microsoft has released Windows 11 KB5124008 and KB5122880 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add new features.
BleepingComputerMicrosoft, Windows - Hitachi security advisory (AV26-893)
Serial Number: AV26-893 Date: September 8, 2026 As of September 8, 2026, Hitachi is affected by vulnerabilities in the following product: Cosminexus Component Container Multiple versions and models The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Vulnerability in Cosminexus Hitachi Vulnerability Information
Canadian Centre for Cyber Security - [Control Systems] Inductive Automation security advisory (AV26-892)
Serial Number: AV26-892 Date: September 8, 2026 As of September 4, 2026, Inductive Automation is affected by a vulnerability in the following product: Ignition Prior to or equal to 8.1.53 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. CSAF/csaf_files/OT/white/2026/icsa-26-246-06.json at develop · cisagov/CSAF · GitHub Inductive Automation Ignition | CISA
Canadian Centre for Cyber SecurityGitHub - JetBrains security advisory (AV26-891)
Serial Number: AV26-891 Date: September 8, 2026 As of September 7, 2026, JetBrains is affected by vulnerabilities in the following products: GoLand Prior to 2026.2.2.1 Hub Prior to 2026.2.52442 IntelliJ IDEA Prior to 2026.2.2 YouTrack Multiple versions The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. Fixed security issues
Canadian Centre for Cyber Security - [Control Systems] Siemens security advisory (AV26-890)
Serial Number: AV26-890 Date: September 8, 2026 As of September 8, 2026, Siemens is affected by vulnerabilities in the following products: Reyrolle 7SR5 Versions prior to V2.70 Teamcenter Multiple versions and models Siveillance Control Multiple versions and models SIMATIC AX Runtime Multiple versions and models Desigo CC Product Family Multiple versions and models Industrial Edge Management Multiple versions and models SIMOVE Fleetmanager and SIPLANT Multiple versions and models The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. CERT Services | Siemens
Canadian Centre for Cyber Security - N-able issues patch for zero-day flaw
Security researchers warned the company of unusual threat activity in a recently patched N-able environment.
Cybersecurity Dive - August updates trigger 0xc0000409 errors on Windows Server 2016
Microsoft says the August 2026 security update may trigger 0xc0000409 errors on Windows Server 2016 systems where the Compatibility Appraiser diagnostic service is enabled.
BleepingComputerMicrosoft, Windows - OpenVPN security advisory (AV26-889)
Serial Number: AV26-889 Date: September 8, 2026 As of September 7, 2026, OpenVPN is affected by vulnerabilities in the following product: OpenVPN Prior to or equal to 2.6.22 Prior to or equal to 2.7.6 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. CVE-2026-84732 - Reliability layer unbounded TLS timeout and acks for non-outstanding packets Security Advisories & Updates | OpenVPN
Canadian Centre for Cyber Security - SAP warns of maximum severity 'OVERPASS' kernel vulnerability
SAP has addressed 20 vulnerabilities across multiple products in its September 2026 security updates, including a maximum-severity memory corruption flaw in the SAP Kernel code.
BleepingComputerSAP
About this news
- 1,276
- Stories
- 28
- Added in the last 24 hours
- 11
- Critical in the last 7 days
- 4
- Reported by several outlets