UNIX CONSULTINGSécurité IT, défense et compliance IA Retour au site

Archive cybersécurité

Archive de veille cybersécurité

Cette archive conserve les signaux déjà publiés afin de stabiliser les URLs indexées et de faciliter la navigation dans les alertes antérieures.

Page 4 sur 20
Sources suivies CERT-FR CISA Microsoft MSRC Cisco Security Advisories SANS ISC Google Project Zero Cloudflare Security GitHub Security Lab SecurityWeek

Chromium: CVE-2026-84325 Improper input validation in DataTransfer

Microsoft MSRC

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Chromium: CVE-2026-84324 Use after free in Proxy

Microsoft MSRC

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Chromium: CVE-2026-84323 Missing authorization in FileSystem

Microsoft MSRC

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-62906 Microsoft Discovery Studio Information Disclosure Vulnerability

Microsoft MSRC

Improper neutralization of special elements in data query logic in Microsoft Discovery Studio allows an unauthorized attacker to... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-70178 Microsoft Fabric Elevation of Privilege Vulnerability

Microsoft MSRC

Missing authorization in Microsoft Fabric allows an authorized attacker to elevate privileges over a network. Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-70352 Azure AI Language Elevation of Privilege Vulnerability

Microsoft MSRC

Missing authentication for critical function in Azure AI Language allows an unauthorized attacker to elevate privileges over a... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-80098 Copilot Studio Elevation of Privilege Vulnerability

Microsoft MSRC

Improper verification of cryptographic signature in Copilot Studio allows an unauthorized attacker to elevate privileges over a... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-69857 Azure Cosmos DB Spoofing Vulnerability

Microsoft MSRC

Authorization bypass through user-controlled key in Azure Cosmos DB allows an authorized attacker to perform spoofing over a... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-65818 Power Automate Elevation of Privilege Vulnerability

Microsoft MSRC

Server-side request forgery (ssrf) in Power Automate allows an authorized attacker to elevate privileges over a network. Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

CVE-2026-62916 Microsoft Entra ID Elevation of Privilege Vulnerability

Microsoft MSRC

Authentication bypass using an alternate path or channel in Microsoft Entra ID allows an unauthorized attacker to elevate... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Tycon Systems TPDIN-Monitor-WEB3

CISA

View CSAF Summary Successful exploitation of these vulnerabilities could allow for an attacker to perform a man-in-the-middle... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Pyramid Solutions NetStaX EtherNet/IP Stack

CISA

View CSAF Summary Successful exploitation of this vulnerability could result in memory corruption, a device crash, or a potential... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

IXON VPN Client

CISA

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to perform remote code execution on the... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Preparing for the Post-Quantum Era: A Call to Action

CISA

CISA and the Group of Seven (G7) Cyber Security Working Group released Preparing for the Post-Quantum Era: A Call to Action... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Rockwell Automation ArmorStart LT

CISA

View CSAF Summary Successful exploitation of these vulnerabilities could result in a loss of webserver availability or allow an... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...

Rockwell Automation ControlFLASH

CISA

View CSAF Summary Successful exploitation of this vulnerability could give an attacker the ability to run any commands or code of... Lecture Unix Consulting: Ce signal doit être rapproché de l’inventaire applicatif, de l’exposition Internet et des procédures de patch management. Le point important n’est...