CVE Digest

CVE Digest — October 1, 2026

  • Security Bulletin
8 CVE 1 KEV Critical

Digest for October 1, 2026: 1 new entry in the CISA KEV catalog and 7 advisories from ACN, the Italian cybersecurity agency. KEV entries are known to be exploited in the wild: patch the affected products as soon as possible.

ACN advisories (Italy)

CVEProductCVSSSeveritySummaryReferences
CVE-2026-104286 KEVFortinet FortiMail9.8CriticalFortinet FortiMail 8.0.0-8.0.1, 7.6.0-7.6.6, 7.4.0-7.4.8 and 7.2.0-7.2.9 has a path traversal and NULL byte neutralization flaw (CWE-22): an unauthenticated attacker can write arbitrary files on the underlying system via crafted HTTP/HTTPS requests. CVSS 9.8 critical; on CISA KE…
CWE-22
rilevate-vulnerabilita-in-n8n-8––Highn8n-io disclosed new vulnerabilities in the open-source workflow automation platform n8n, 11 rated high severity. If exploited, an attacker could obtain confidential information, bypass security and authentication mechanisms, or execute arbitrary code on affected systems.
risolte-vulnerabilita-in-misp-2––CriticalSecurity updates fix multiple vulnerabilities in MISP, the open-source collaborative platform for sharing and analyzing cyber threat intelligence, including 1 rated critical and 6 rated high severity.
risolta-vulnerabilita-in-mikrotik-routeros––CriticalSecurity updates for MikroTik RouterOS fix a critical vulnerability that, if exploited, could allow an unauthenticated remote attacker to execute arbitrary code or compromise service availability on affected systems.
vulnerabilita-in-prodotti-jetbrains––HighJetBrains released security updates fixing multiple vulnerabilities, including 12 rated high severity, affecting YouTrack, Hub, IntelliJ IDEA and TeamCity products.
risolte-vulnerabilita-in-prodotti-nvidia-5––HighSecurity updates resolve 114 vulnerabilities, 78 rated high severity, affecting NVIDIA GPU drivers and vGPU software.
risolte-vulnerabilita-in-cpython––CriticalSecurity updates fix 2 vulnerabilities in CPython, the reference open-source implementation of Python, 1 critical and 1 high. Exploitation could allow an unauthenticated remote attacker to bypass security mechanisms or compromise service availability.
vulnerabilita-in-prodotti-asus-1––CriticalASUS released security updates fixing 3 vulnerabilities, 1 rated critical and 2 rated high, affecting several motherboard and router models.

Disclaimer

This page is generated automatically from public sources. Details, scores and affected versions can change: always check the linked advisories before taking action.