#severity


Microsoft warns of max severity Entra ID flaw exploited in attacks

Aug 21, 2026 // 14:17

Microsoft has patched a maximum-severity vulnerability in the Entra ID identity and access management (IAM) platform that has been exploited in attacks. Formerly known as […]

Max severity SAP Commerce Cloud flaw now targeted in attacks

Aug 14, 2026 // 16:56

A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. […]

Ubiquiti warns of new max severity UniFi OS vulnerability

Jul 8, 2026 // 11:17

Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw tracked as CVE-2026-50746 that can be exploited in […]

CISA orders feds to patch max severity ColdFusion flaw by Friday

Jul 8, 2026 // 11:02

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered government agencies to patch an actively exploited maximum-severity flaw in the Adobe ColdFusion commercial web […]

Max severity Adobe ColdFusion flaw now exploited in attacks

Jul 6, 2026 // 18:58

Attackers are now exploiting a maximum-severity Adobe ColdFusion vulnerability tracked as CVE-2026-48282, according to vulnerability intelligence company KEVIntel. ColdFusion is a commercial web app development platform designed […]

Adobe patches seven max severity ColdFusion, Campaign flaws

Jul 1, 2026 // 14:17

Adobe has released security patches for seven maximum-severity vulnerabilities in the ColdFusion web app development platform and the Campaign Classic marketing automation platform. All these […]

CISA warns of max severity Ubiquiti flaws exploited in attacks

Jun 24, 2026 // 17:36

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of hackers actively exploiting flaws in Ubiquity UniFi OS and Lantronix serial-to-ethernet servers. According to the BOD 26-04 directive, […]

CISA orders feds to patch max severity Joomla plugin flaw by Friday

Jun 17, 2026 // 15:17

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity flaw in the Widget Factory Joomla Content Editor (JCE) […]

Max severity Ivanti Sentry vulnerability now exploited in attacks

Jun 11, 2026 // 10:17

Attackers are now targeting a recently patched maximum-severity flaw in Ivanti Sentry, enabling them to execute code with root privileges on Internet-exposed secure mobile gateways. […]

Ivanti: Max severity Sentry flaw allows code execution as root

Jun 10, 2026 // 10:36

Security software company Ivanti has released patches to address two critical vulnerabilities in its Sentry secure mobile gateway solution, including a maximum-severity flaw that enables […]