Latest security advisories
Live feed of vulnerabilities BriefOps extracted from security newsletters · How it works · register to get alerted about your software.
| Severity | Advisory | CVEs | Source | Found |
|---|---|---|---|---|
| n/a |
vierter bei Claude Opus
— affected: 4.6
Nachdem Anthropic schon Ende Juli drei Hacking-Angriffe meldete, ist nach Analyse der Daten jetzt noch ein vierter bei Claude Opus 4.6 hinzugekommen. |
— | Vierter Hacking-Vorfall: Weiteres Anthropic-Modell bricht aus Testumgebung aus | 2026-09-14 |
| n/a |
public record shows. About
— affected: 598.5
Whoever took nearly 4,000 bitcoin from the Liquid Network on Sunday, September 6, returned 3,400 of it the next day, Bitcoin's public record shows. About 598.5 bitcoin has not come back. |
— | Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC | 2026-09-14 |
| n/a |
Claude Opus
— affected: 4.6
The AI company said the incident dates back to January 2026 and involved an early version of Claude Opus 4.6 that breached " |
— | Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6 | 2026-09-14 |
| n/a |
MF versions
— affected: 25.0.13
The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. |
— | PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws | 2026-09-14 |
| n/a |
MF
— affected: 26.0.5
The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. |
— | PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws | 2026-09-14 |
| critical |
RSLinx Classic
— affected: 4.60
Remediations Vendor fix Rockwell Automation has corrected the vulnerabilities in RSLinx Classic version 4.60. Mitigation Users using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell Automation's security best practices https://support.rockwella |
— | Read more → | 2026-09-14 |
| critical |
Module Configuration Tool
— affected: 10.01.00
Remediations Vendor fix Rockwell Automation has released Redundancy Module Configuration Tool version 10.01.00 for users to install. Mitigation Customers using the affected software, who are not able to upgrade to one of the corrected versions, should use Rockwell Automation's security best practice |
— | Read more → | 2026-09-14 |
| critical |
Redundancy Module Configuration Tool
— affected: 10.00.00
Redundancy Module Configuration Tool 10.00.00 (CVE-2026-9633) Redundancy Module Configuration Tool >=9.00.00|<=10.00.00 (CVE-2026-9634) |
CVE-2026-9633, CVE-2026-9634 | Read more → | 2026-09-14 |
| critical |
firmware
— affected: 34.015, 35.014, 36.013
Remediations Vendor fix Rockwell Automation recommends users update to firmware version V37.011. Vendor fix Rockwell Automation recommends users update to firmware version 34.015. Vendor fix Rockwell Automation recommends users update to firmware version 35.014. Vendor fix Rockwell Automation recomm |
— | Read more → | 2026-09-14 |
| critical |
Series C
— affected: 7.101
Series B 5.202 (CVE-2025-12768, CVE-2026-12661) Series C 7.101 (CVE-2025-12768, CVE-2026-12661) |
CVE-2025-12768, CVE-2026-12661 | Read more → | 2026-09-14 |
| critical |
Series B
— affected: 5.202
Series B 5.202 (CVE-2025-12768, CVE-2026-12661) Series C 7.101 (CVE-2025-12768, CVE-2026-12661) |
CVE-2025-12768, CVE-2026-12661 | Read more → | 2026-09-14 |
| critical |
read by a
— affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
directly and arrives at
— affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
unit running
— affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
field, including the
— affected: 2.9
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
TPDIN-MONITOR-WEB3-V2_v2.
— affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
Units already running
— affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
TPDIN-Monitor-WEB3 Firmware
— affected: 4.2
Remediations Vendor fix Tycon Systems has released TPDIN-Monitor-WEB3 Firmware v2.4.2. Mitigation Units already running v2.4.2, for subsequent updates (signed container): https://firm.tyconsystems.com/tpdin-monitor-web3-v2/TPDIN-MONITOR-WEB3-V2_v2.4.2.tfw Mitigation All units currently in the field, |
— | Read more → | 2026-09-14 |
| critical |
Tycon Systems TPDIN-Monitor-WEB3
— affected: 2.2.9
Tycon Systems TPDIN-Monitor-WEB3 versions 2.2.9 and prior are vulnerable to a Use of Hard-coded Credential vulnerability. This could allow an attacker to intercept sensitive information or credentials. View CVE Details |
CVE-2026-77847, CVE-2026-82712, CVE-2026-82684 | Read more → | 2026-09-14 |
| critical |
units still running firmware
— affected: 2.4.4
Remediations Vendor fix Tycon Systems has released firmware 2.4.5, which resolves this vulnerability by requiring an administrator username and password to be set before the web interface is served. Further inquiries can be directed to security@tyconsystems.com. Mitigation Tycon Systems recommends s |
— | Read more → | 2026-09-14 |
| critical |
Systems has released firmware
— affected: 2.4.5
Remediations Vendor fix Tycon Systems has released firmware 2.4.5, which resolves this vulnerability by requiring an administrator username and password to be set before the web interface is served. Further inquiries can be directed to security@tyconsystems.com. Mitigation Tycon Systems recommends s |
— | Read more → | 2026-09-14 |
| critical |
first use. On firmware
— affected: 2.4.4
The device ships without HTTP credentials configured, intended for an installer to set them on first use. On firmware 2.4.4 and earlier, a unit left in this unconfigured state serves the web management interface without requiring any login. An attacker with network access to such a unit can reach fu |
CVE-2026-61884 | Read more → | 2026-09-14 |
| critical |
NetStaX
— affected: 6.1
Remediations Mitigation NetStaX v5.6.1 addresses this issue with multiple layers of protection, including a compile-time assertion, a runtime payload-size check, and clearer documentation of the relationships between packet and buffer-size constants. https://pyramidsolutions.com/my-account/ Mitigati |
— | Read more → | 2026-09-14 |
| critical |
Remediations Mitigation NetStaX
— affected: 6.1
Remediations Mitigation NetStaX v5.6.1 addresses this issue with multiple layers of protection, including a compile-time assertion, a runtime payload-size check, and clearer documentation of the relationships between packet and buffer-size constants. https://pyramidsolutions.com/my-account/ Mitigati |
— | Read more → | 2026-09-14 |
| critical |
Stack prior to
— affected: 6.1
An issue in the NetStaX EtherNet/IP Stack prior to v5.6.1 could allow a large Class 3 explicit-message request to exceed the application-side receive buffer without generating an error or warning. The result could be memory corruption, a device crash, or a potential remote attack vector without the |
CVE-2026-78012 | Read more → | 2026-09-14 |
| critical |
software
— affected: 15.08
Remediations Mitigation Rockwell Automation has corrected this issue in software version 15.08, and encourages all users to update to the newest version. Mitigation Users of the affected software who are not able to upgrade to one of the corrected versions should implement the following mitigation: |
— | Read more → | 2026-09-14 |
| critical |
OPC UA LDS Installers
— affected: 1.04.420
Remediations Mitigation OPCFoundation recommends users update to OPC UA LDS Installers 1.04.420 or later. Mitigation For more information about this vulnerability and its mitigation, see the OPCFoundation security advisory. https://github.com/OPCFoundation/OPC-SecurityAdvisories/tree/latest/csaf/202 |
— | Read more → | 2026-09-14 |
| critical |
CPU866e Firmware
— affected: 11.06.37
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
firmware. Vendor
— affected: 2.9.5
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version
— affected: 503.101, 003.001
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
yes Vendor
— affected: 64.2025.0.14
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
software. Vendor
— affected: 3.0.4
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
upgrade. Vendor
— affected: 6.4.610.500, 11.08.03
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
HUe Firmware
— affected: 11.06.31
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version C434.
— affected: 679.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P138.
— affected: 677.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P634.
— affected: 680.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P633.
— affected: 678.700, 680.701
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P632.
— affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P539.
— affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P439.
— affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
Vendor fix Version P139.
— affected: 678.700
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
required. Vendor
— affected: 1.1.18
Remediations Vendor fix Version D7.34 of MiCOM C264 includes a fix for this vulnerability. Contact Schneider Electric’s Customer Care Center for information on how to contact your local Application Center to update the device. Reboot is required. Vendor fix Version 1.1.18 of Easergy C5 includes a fi |
— | Read more → | 2026-09-14 |
| critical |
prior, Easergy C5
— affected: 1.1.17
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
prior, PowerLogic T500
— affected: 11.08.02
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
prior, PowerLogic T300
— affected: 2.9.4
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
Protection and Control Platform
— affected: 002.002
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
P5 Protection Relay
— affected: 502.103
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
CU2 and prior, iPMFLS
— affected: 64.2025.0.13
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
| critical |
MiCOM P634 version P634.
— affected: 680.700
Vendor: Schneider Electric Product Version: Easergy MiCOM C264 Versions D7.33 and prior, Easergy MiCOM P139 version prior to P139.678.700, Easergy MiCOM P437 version prior to P437.678.700, Easergy MiCOM P439 version prior to P439.678.700, Easergy MiCOM P532 version prior to P532.678.700, Easergy MiC |
— | Read more → | 2026-09-14 |
Want alerts for your own software?
BriefOps checks every advisory against your software list (SBOM) and emails you only when you are actually affected.