Skip to main content

Security Briefs

Page 71 of 111.

Alerts tracked

2651

Security flaws we track for Upstate SC businesses.

Known exploited

504

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

60

Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 22, 2026, 6:00 AM UTC.

Showing page 71 (24 alerts) of 2651.

Microsoft MSRC

CVE-2026-11633

Use after free in Bluetooth in Microsoft Edge vulnerability

Use after free in Bluetooth in Microsoft Edge vulnerability (CVE-2026-11633) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11632

Use after free in TabStrip in Microsoft Edge vulnerability

Use after free in TabStrip in Microsoft Edge vulnerability (CVE-2026-11632) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11631

Use after free in Aura in Microsoft Edge vulnerability

Use after free in Aura in Microsoft Edge vulnerability (CVE-2026-11631) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11630

Use after free in File Input in Microsoft Edge vulnerability

Use after free in File Input in Microsoft Edge vulnerability (CVE-2026-11630) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11629

Use after free in Ozone in Microsoft Edge vulnerability

Use after free in Ozone in Microsoft Edge vulnerability (CVE-2026-11629) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-11628

Use after free in Ozone in Microsoft Edge vulnerability

Use after free in Ozone in Microsoft Edge vulnerability (CVE-2026-11628) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome.  Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2025) for more information. If you need help checking exposure, call (864) 335-9223.

Industry news

Scammers Use Couriers to Collect Cash in Cryptocurrency Investment Scams

Scammers Use Couriers to Collect Cash in Cryptocurrency Investment Scams — FBI IC3 industry advisory relevant to cyber risk. PremierePC monitors federal alerts for Upstate SC businesses. Read the source link for full guidance or open a ticket if you want help assessing impact.

  • Vendor:FBI IC3
Actively exploited (KEV)

CVE-2026-54420

LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability

LiteSpeed cPanel Plugin is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-54420). LiteSpeed cPanel plugin contains a UNIX symbolic link (Symlink) following vulnerability that could allow a user with FTP or web shell access on a shared hosting server running CloudLinux/CageFS. CISA remediation due date: 2026-06-18. PremierePC tracks KEV alerts for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-33118

Microsoft Edge (Chromium-based) Spoofing vulnerability

Microsoft Edge (Chromium-based) Spoofing vulnerability (CVE-2026-33118) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)

CVE-2026-20262

Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability

Cisco Catalyst SD-WAN Manager is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-20262). Cisco Catalyst SD-WAN Manager contains a directory or path traversal vulnerability that could allow an authenticated, remote attacker to create a file or overwrite any file on the filesystem of an affected system. CISA remediation due date: 2026-06-29. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12019

Out of bounds write Codecs in Microsoft Edge vulnerability

Out of bounds write Codecs in Microsoft Edge vulnerability (CVE-2026-12019) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12018

Inappropriate implementation Mojo in Microsoft Edge vulnerability

Inappropriate implementation Mojo in Microsoft Edge vulnerability (CVE-2026-12018) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12017

Insufficient validation of untrusted input Extensions in Microsoft Edge vulnerability

Insufficient validation of untrusted input Extensions in Microsoft Edge vulnerability (CVE-2026-12017) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12016

Insufficient validation of untrusted input DevTools in Microsoft Edge vulnerability

Insufficient validation of untrusted input DevTools in Microsoft Edge vulnerability (CVE-2026-12016) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12015

Use after free Autofill in Microsoft Edge vulnerability

Use after free Autofill in Microsoft Edge vulnerability (CVE-2026-12015) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12014

Use after free Cast in Microsoft Edge vulnerability

Use after free Cast in Microsoft Edge vulnerability (CVE-2026-12014) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12013

Use after free Media in Microsoft Edge vulnerability

Use after free Media in Microsoft Edge vulnerability (CVE-2026-12013) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12012

Use after free Network in Microsoft Edge vulnerability

Use after free Network in Microsoft Edge vulnerability (CVE-2026-12012) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12011

Use after free WebMIDI in Microsoft Edge vulnerability

Use after free WebMIDI in Microsoft Edge vulnerability (CVE-2026-12011) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12010

Heap buffer overflow GPU in Microsoft Edge vulnerability

Heap buffer overflow GPU in Microsoft Edge vulnerability (CVE-2026-12010) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12009

Insufficient validation of untrusted input Accessibility in Microsoft Edge vulnerability

Insufficient validation of untrusted input Accessibility in Microsoft Edge vulnerability (CVE-2026-12009) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12008

Use after free DigitalCredentials in Microsoft Edge vulnerability

Use after free DigitalCredentials in Microsoft Edge vulnerability (CVE-2026-12008) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-12007

Use after free Core in Microsoft Edge vulnerability

Use after free Core in Microsoft Edge vulnerability (CVE-2026-12007) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/search/label/Desktop%20Update) for more information. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2026-35273

Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability

Oracle PeopleSoft Enterprise PeopleTools is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-35273). Oracle PeopleSoft Enterprise PeopleTools contains a missing authentication for critical function vulnerability which could allow an unauthenticated attacker to obtain takeover of PeopleSoft Enterprise PeopleTools. CISA remediation due date: 2026-06-15. If you need help checking exposure, call (864) 335-9223.