HPE Aruba CX switches
Critical vulnerability (CVSS 9.8) in Aruba AOS-CX switches. Find out which versions are affected and what update is needed to secure your network.
FortiSandbox CVE-2025-52436
FortiSandbox has a security issue in older versions. Update to 5.0.2+ or 4.4.8+. For PaaS, the fix is there in 4.4.8 and 5.0.5.
Administrative FortiCloud SSO authentication bypass - CVE-2026-24858
A flaw in FortiCloud SSO allows an attacker to log into other people's devices with their own FortiCloud account, resulting in full admin access.
Fortinet Vulnerabilities 12/2025
Fortinet has confirmed a critical vulnerability within FortiProxy and FortiSwitch Manager, potentially impacting multiple Fortinet products. This vulnerability could allow attackers to gain unauthorised access to vulnerable systems.
Fortiweb relative path traversal CVE-2025-64446
A serious vulnerability in FortiWeb, a solution from manufacturer Fortinet, has been discovered and should be patched as soon as possible.
Netscaler (Citrix) Vulnerabilities 08/2025
Citrix has reported three serious vulnerabilities in Netscaler. VanRoey is proactively rolling out the update to protect customers immediately and mitigate the impact.
N-Central Vulnerabilities 08/2025
N-Able has fixed two serious vulnerabilities in N-Central. VanRoey is proactively rolling out the update to protect customers immediately and limit the impact.
SharePoint Vulnerability 07/2025
Microsoft recently discovered two critical vulnerabilities in on-premises SharePoint Servers
Ruckus Vulnerability 07/2025
Several Ruckus network products, including ZoneDirector and SmartZone have a vulnerability that needs to be fixed quickly.
Vmware ESXI Vulnerabilities 07/2025
4 actively used zero-day vulnerabilities in multiple VMware products were addressed with key patches.
Critical vulnerabilities in VMware vCenter Server
VMware released a critical security update on 16 May 2025 (VMSA-2025-0010). This advisory contains three vulnerabilities that primarily impact vCenter Server and VMware Cloud Foundation.
Vmware ESXI Vulnerabilities
Critical VMware ESXi vulnerability discovered! Update to the latest version now to avoid security risks.
Storm-2372 'Device code phishing' attack
The cyber threat group 'Storm-2372′ has been carrying out attacks on governments, NGOs and various industries worldwide since August 2024, abusing 'Device Code Phishing' where an access token is misused.
Action required for KnowBe4 Phish Alert Button
Important change for KnowBe4 users: Microsoft disables legacy Exchange Online tokens. Re-authenticate the Phish Alert Button via NAA-SSO to avoid failures. Read how to solve this easily or let us help!
Critical vulnerability in FortiOS and FortiProxy
A vulnerability was recently discovered in FortiOS and FortiProxy that may allow an attacker to gain unauthorised access to a firewall's management interface. Action is required!