Home/News

Security & Lifecycle News

Aggregated from vendor advisories, security research, and industry publications.

The Register

UK.gov warned that digital transformation hype is no substitute for delivery

Parliamentary committee says £45B savings claim risks undermining public sector tech reform rather than helping it

FortiGuard PSIRT Advisories

Improper access control in API endpoints

CVSSv3 Score: 6.2 An improper access control vulnerability [CWE-284] in FortiPortal API endpoints may allow a remote privileged attacker with organization user role to obtain…

FortiGuard PSIRT Advisories

Restricted CLI escape using Lua

CVSSv3 Score: 6.0 An Internal Asset Exposed to Unsafe Debug Access Level or State vulnerability [CWE-1244] in FortiOS and FortiProxy may allow an authenticated admin to execu…

SecurityWeek

Google Patches 5th Chrome Zero-Day Exploited in 2026

The vulnerability is tracked as CVE-2026-11645 and it was reported in late April by an anonymous researcher. The post Google Patches 5th Chrome Zero-Day Exploited in 2026 appeared …

CVE-2026-11645
Network World

Attackers exploiting unpatched Cisco SD-WAN flaw

Cisco warns customers of an actively exploited high-severity vulnerability in Catalyst SD-WAN Manager, an enterprise network management system that has been targeted by hackers mul…

Cisco CVE-2026-20127 CVE-2026-20245
Schneier on Security

Critical Zcash Vulnerability Found and Fixed

If you’re a user—owner?—of this cryptocurrency, this is important: On May 29, the security researcher Taylor Hornby found a critical vulnerability in Zcash Orchard privacy pool usi…

↑ Top