CVE Digest

CVE Digest — September 15, 2026

  • Security Bulletin
6 CVE

Digest for September 15, 2026: 0 new entries in the CISA KEV catalog and 6 advisories from ACN, the Italian cybersecurity agency. KEV entries are known to be exploited in the wild: patch the affected products as soon as possible.

ACN advisories (Italy)

CVEProductCVSSSeveritySummaryReferences
aggiornamenti-di-sicurezza-apple-19UnknownApple released security updates fixing 273 new vulnerabilities across iOS, iPadOS, macOS Golden Gate, macOS Tahoe, macOS Sequoia, tvOS, watchOS, visionOS, Safari, and Xcode. Apply the updates promptly to reduce exposure.
rilevate-vulnerabilita-nel-tema-wordpress-design-scuole-italia-UnknownFour vulnerabilities, two rated high severity, affect the WordPress theme Design Scuole Italia used for Italian school websites. Exploitation could allow arbitrary file reads, authentication bypass, open redirects, and exposure of sensitive data.
vulnerabilita-in-prodotti-gnuUnknownTwo high-severity vulnerabilities were fixed in GNU libextractor and GNU glibc. Exploitation could allow arbitrary code execution and compromise service availability on affected systems. Update both libraries promptly.
vulnerabilita-nel-modulo-cpython-tarfile-1UnknownA high-severity vulnerability in CPython’s tarfile module could let attackers access sensitive information and manipulate data through specially crafted tar archives. Update CPython to the patched version.
sanata-vulnerabilita-in-ibm-db2UnknownIBM security updates fix a high-severity vulnerability in the Db2 relational database system that could allow a remote attacker to write arbitrary files on affected systems. Apply the provided updates.
trexom-aggiornamenti-di-sicurezzaUnknownTrexom released security updates fixing a high-severity vulnerability in TrxTimeATTENDANCE attendance-tracking software that could allow remote arbitrary code execution on affected systems. Update affected installations.

Disclaimer

This page is generated automatically from public sources. Details, scores and affected versions can change: always check the linked advisories before taking action.