Skip to main content
Griffin Technology PartnersGTP

Public security advisories

GTP Security Intelligence

Current vulnerabilities, known exploitation, Microsoft security updates, and practical guidance from Griffin Technology Partners.

Primary sources

Microsoft Security Response Center
CISA Known Exploited Vulnerabilities

Subscribe via RSS

Vulnerability intelligence

Security bulletins

Last collection: October 8, 2026
Six-hour refresh · Public-source information only

494 bulletins · Page 1 of 21

JSON feed
Severity not suppliedKnown exploited
CVE-2016-3081Apache

Apache Struts Command Injection Vulnerability

Apache Struts contains a command injection vulnerability that could allow remote attackers to execute arbitrary code via method:prefix when Dynamic Method Invocation is enabled.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Struts

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2023-22894Strapi

Strapi Cleartext Storage of Sensitive Information Vulnerability

Strapi contains a cleartext storage of sensitive information vulnerability that could allow attackers with access to the admin panel to discover sensitive user details via the query filter. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version. This vulnerability can be chained with CVE-2023-22621 to achieve remote code execution.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Strapi

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-88779Citrix

Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Citrix NetScaler ADC (formerly Citrix ADC) and Citrix NetScaler Gateway (formerly Citrix Gateway) contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for a denial of service.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: NetScaler

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-104286Fortinet

Fortinet FortiMail Path Traversal Vulnerability

Fortinet FortiMail contains a path traversal and an improper neutralization of NULL byte or NULL character vulnerability that may allow an unauthenticated attacker to write arbitrary files on the underlying system via crafted HTTP or HTTPS requests.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: FortiMail

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-76504Cisco

Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability

Cisco Catalyst SD-WAN Manager contains a hex encoding vulnerability that could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user due to improper handling of URI encoding in an HTTP request.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Catalyst SD-WAN Manager

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-88772Citrix

Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for remote code execution or denial of service

CVSS
Not supplied
Update availability
Patch status unknown

Affected: NetScaler

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-67279MikroTik

Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability

Mikrotik RouterOS contains an improper enforcement of behavioral workflow vulnerability that could allow an unauthenticated client to open a session channel and send an exec request. This vulnerability can be chained to achieve unauthenticated exploitation of CVE-2026-86060.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: RouterOS

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-87902WordPress

WordPress Core Remote File Inclusion Vulnerability

WordPress Core contains a remote file inclusion vulnerability which could allow an unauthenticated attacker to make page-template resolution include a chosen readable local `.php` file outside the active theme directories, leading to remote code execution.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Core

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-5430WSO2

WSO2 Multiple Products Path Traversal Vulnerability

WSO2 API Control Plane, API Manager, Traffic Manager & Universal Gateway contain a path traversal vulnerability that could allow for unrestricted file upload and lead to remote code execution.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Multiple Products

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-85102Check Point

Check Point Multiple Products Improper Certificate Validation Vulnerability

Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Multiple Products

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-93616Check Point

Check Point Multiple Products Path Traversal Vulnerability

Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent contain a path traversal vulnerability that allows an unauthenticated attacker to upload and execute arbitrary scripts.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Multiple Products

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-93952Arista

Arista VeloCloud Orchestrator Improper Input Validation Vulnerability

Arista VeloCloud Orchestrator (VCO) on-prem contains an improper input validation vulnerability that may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: VeloCloud Orchestrator

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-94127F5

F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability

F5 BIG-IP APM contains a heap-based buffer overflow vulnerability when access policy and an OAuth profile are configured on a virtual server. This vulnerability could allow an unauthenticated attacker to perform remote code execution.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: BIG-IP APM

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2026-7273Zyxel

Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability

Zyxel GS1900 series switches contain a stack-based buffer overflow vulnerability in the CGI program which could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: GS1900 Series Switches

Added to CISA KEV

Severity not suppliedKnown exploited
CVE-2025-39682Linux

Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability

Linux Kernel contains an improper check for unusual or exceptional conditions vulnerability in the TLS receive path which allows a zero-length record retrieved from the rx_list to bypass the intended recvmsg() record-type handling, potentially causing subsequent TLS records to be processed using incorrect zero-copy and queuing assumptions. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

CVSS
Not supplied
Update availability
Patch status unknown

Affected: Kernel

Added to CISA KEV

Sources & coverage

The collection starts with 90 days of Microsoft updates and CISA additions, plus older Microsoft vulnerabilities still listed by CISA. Older entries do not imply that a product remains supported. Counts describe this collection, not every vulnerability or any customer environment.

Microsoft Security Response Center (opens in a new tab)

Last successful check: October 8, 2026

CISA Known Exploited Vulnerabilities (opens in a new tab)

Last successful check: October 8, 2026

Managed by GTP?

Griffin Technology Partners managed customers may receive additional environment-specific security guidance and remediation assistance through their managed services relationship.

Security bulletins are provided for informational purposes and compiled from authoritative public sources. Vulnerability applicability varies by environment. Validate affected products, configuration, compatibility requirements, and vendor guidance before making production changes.