v1.0

Latest security advisories

Live feed of vulnerabilities BriefOps extracted from security newsletters · How it works · register to get alerted about your software.

50 advisories tracked · 45 critical 0 high 0 medium 0 low · subscribe: RSS

Advisory list

filter: all | critical | high | medium | low
Severity Advisory CVEs Source Found
n/a vierter bei Claude Opus — affected: 4.6
Nachdem Anthropic schon Ende Juli drei Hacking-Angriffe meldete, ist nach Analyse der Daten jetzt noch ein vierter bei Claude Opus 4.6 hinzugekommen.
Vierter Hacking-Vorfall: Weiteres Anthropic-Modell bricht aus Testumgebung aus 2026-09-14
n/a public record shows. About — affected: 598.5
Whoever took nearly 4,000 bitcoin from the Liquid Network on Sunday, September 6, returned 3,400 of it the next day, Bitcoin's public record shows. About 598.5 bitcoin has not come back.
Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC 2026-09-14
n/a Claude Opus — affected: 4.6
The AI company said the incident dates back to January 2026 and involved an early version of Claude Opus 4.6 that breached "
Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6 2026-09-14
n/a MF versions — affected: 25.0.13
The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download.
PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws 2026-09-14
n/a MF — affected: 26.0.5
The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download.
PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws 2026-09-14
critical RSLinx Classic — affected: 4.60
Remediations Vendor fix Rockwell Automation has corrected the vulnerabilities in RSLinx Classic version 4.60. Mitigation Users using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell Automation's security best practices https://support.rockwella
Read more → 2026-09-14
critical Module Configuration Tool — affected: 10.01.00
Remediations Vendor fix Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 for users to install. Mitigation Customers using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell Automation's security best practice
Read more → 2026-09-14
critical Redundancy Module Configuration Tool — affected: 10.00.00
Redundancy Module Configuration Tool 10.00.00 (CVE-2026-9633) Redundancy Module Configuration Tool >=9.00.00|<=10.00.00 (CVE-2026-9634)
CVE-2026-9633, CVE-2026-9634 Read more → 2026-09-14
critical firmware — affected: 34.015, 35.014, 36.013
Remediations Vendor fix Rockwell Automation recommends users update to firmware version V37.011. Vendor fix Rockwell Automation recommends users update to firmware version 34.015. Vendor fix Rockwell Automation recommends users update to firmware version 35.014. Vendor fix Rockwell Automation recomm
Read more → 2026-09-14
critical Series C — affected: 7.101
Series B 5.202 (CVE-2025-12768, CVE-2026-12661) Series C 7.101 (CVE-2025-12768, CVE-2026-12661)
CVE-2025-12768, CVE-2026-12661 Read more → 2026-09-14
critical Series B — affected: 5.202
Series B 5.202 (CVE-2025-12768, CVE-2026-12661) Series C 7.101 (CVE-2025-12768, CVE-2026-12661)
CVE-2025-12768, CVE-2026-12661 Read more → 2026-09-14
critical read by a — affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical directly and arrives at — affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical unit running — affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical field, including the — affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical TPDIN-MONITOR-WEB3-V2_v2. — affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical Units already running — affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical TPDIN-Monitor-WEB3 Firmware — affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field,
Read more → 2026-09-14
critical Tycon Systems TPDIN-Monitor-WEB3 — affected: 2.2.9
Tycon Systems TPDIN-Monitor-WEB3 versions 2.2.9 and prior are vulnerable to a Use of Hard-coded Credential vulnerability. This could allow an attacker to intercept sensitive information or credentials. View CVE Details
CVE-2026-77847, CVE-2026-82712, CVE-2026-82684 Read more → 2026-09-14
critical units still running firmware — affected: 2.4.4
Remediations Vendor fix Tycon Systems has released firmware 2.4.5, which resolves this vulnerability by requiring an administrator username and password to be set before the web interface is served. Further inquiries can be directed to security@tyconsystems.com. Mitigation Tycon Systems recommends s
Read more → 2026-09-14
critical Systems has released firmware — affected: 2.4.5
Remediations Vendor fix Tycon Systems has released firmware 2.4.5, which resolves this vulnerability by requiring an administrator username and password to be set before the web interface is served. Further inquiries can be directed to security@tyconsystems.com. Mitigation Tycon Systems recommends s
Read more → 2026-09-14
critical first use. On firmware — affected: 2.4.4
The device ships without HTTP credentials configured, intended for an installer to set them on first use. On firmware 2.4.4 and earlier, a unit left in this unconfigured state serves the web management interface without requiring any login. An attacker with network access to such a unit can reach fu
CVE-2026-61884 Read more → 2026-09-14
critical NetStaX — affected: 6.1
Remediations Mitigation NetStaX v5.6.1 addresses this issue with multiple layers of protection, including a compile-time assertion, a runtime payload-size check, and clearer documentation of the relationships between packet and buffer-size constants. https://pyramidsolutions.com/my-account/ Mitigati
Read more → 2026-09-14
critical Remediations Mitigation NetStaX — affected: 6.1
Remediations Mitigation NetStaX v5.6.1 addresses this issue with multiple layers of protection, including a compile-time assertion, a runtime payload-size check, and clearer documentation of the relationships between packet and buffer-size constants. https://pyramidsolutions.com/my-account/ Mitigati
Read more → 2026-09-14
critical Stack prior to — affected: 6.1
An issue in the NetStaX EtherNet/IP Stack prior to v5.6.1 could allow a large Class 3 explicit-message request to exceed the application-side receive buffer without generating an error or warning. The result could be memory corruption, a device crash, or a potential remote attack vector without the
CVE-2026-78012 Read more → 2026-09-14
critical software — affected: 15.08
Remediations Mitigation Rockwell Automation has corrected this issue in software version 15.08, and encourages all users to update to the newest version. Mitigation Users of the affected software who are not able to upgrade to one of the corrected versions should implement the following mitigation:
Read more → 2026-09-14
critical OPC UA LDS Installers — affected: 1.04.420
Remediations Mitigation OPCFoundation recommends users update to OPC UA LDS Installers 1.04.420 or later. Mitigation For more information about this vulnerability and its mitigation, see the OPCFoundation security advisory. https://github.com/OPCFoundation/OPC-SecurityAdvisories/tree/latest/csaf/202
Read more → 2026-09-14
critical CPU866e Firmware — affected: 11.06.37
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical firmware. Vendor — affected: 2.9.5
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version — affected: 503.101, 003.001
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical yes Vendor — affected: 64.2025.0.14
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical software. Vendor — affected: 3.0.4
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical upgrade. Vendor — affected: 6.4.610.500, 11.08.03
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical HUe Firmware — affected: 11.06.31
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version C434. — affected: 679.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P138. — affected: 677.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P634. — affected: 680.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P633. — affected: 678.700, 680.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P632. — affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P539. — affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P439. — affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical Vendor fix Version P139. — affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical required. Vendor — affected: 1.1.18
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi
Read more → 2026-09-14
critical prior, Easergy C5 — affected: 1.1.17
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical prior, PowerLogic T500 — affected: 11.08.02
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical prior, PowerLogic T300 — affected: 2.9.4
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical Protection and Control Platform — affected: 002.002
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical P5 Protection Relay — affected: 502.103
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical CU2 and prior, iPMFLS — affected: 64.2025.0.13
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14
critical MiCOM P634 version P634. — affected: 680.700
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC
Read more → 2026-09-14

Want alerts for your own software?

BriefOps checks every advisory against your software list (SBOM) and emails you only when you are actually affected.