<?xml version="1.0" encoding="UTF-8"?><feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en"><id>https://cyber.gc.ca/api/cccs/atom/v1/get?feed=alerts_advisories&amp;lang=en</id><link rel="self" href="https://cyber.gc.ca/api/cccs/atom/v1/get?feed=alerts_advisories&amp;lang=en"/><title>Alerts and advisories</title><updated>2026-05-27T19:38:08Z</updated><entry><id>https://cyber.gc.ca/en/alerts-advisories/google-chrome-security-advisory-av26-517</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/google-chrome-security-advisory-av26-517"/><title><![CDATA[Google Chrome security advisory (AV26-517)]]></title><updated>2026-05-27T19:38:08Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7751" about="/en/alerts-advisories/google-chrome-security-advisory-av26-517" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-517<br /><strong>Date:</strong> May 27, 2026</p>

<p>On May 27, 2026, Google published a security advisory to address vulnerabilities in the following product:</p>

<ul><li>Stable Channel Chrome for Desktop – versions prior to0.7778.216/217 (Windows), 148.0.7778.215/216 (Mac) and 148.0.7778.215 (Linux)</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates, when available.</p>

<ul class="list-unstyled"><li><a href="https://chromereleases.googleblog.com/2026/05/stable-channel-update-for-desktop_0877304591.html">Google Chrome Security Advisory</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-516</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/gitlab-security-advisory-av26-516"/><title><![CDATA[GitLab security advisory (AV26-516)]]></title><updated>2026-05-27T19:05:04Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7750" about="/en/alerts-advisories/gitlab-security-advisory-av26-516" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-516<br /><strong>Date:</strong> May 27, 2026</p>

<p>On May 27, 2026, GitLab published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>GitLab Community Edition (CE) – versions prior to 19.0.1, 18.11.4, 18.10.7</li>
	<li>GitLab Enterprise Edition (EE) – versions prior to 19.0.1, 18.11.4, 18.10.7</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://docs.gitlab.com/releases/patches/patch-release-gitlab-19-0-1-released/">GitLab Patch Release: 19.0.1, 18.11.4, 18.10.7</a></li>
	<li><a href="https://about.gitlab.com/releases/categories/releases/">GitLab Releases</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/jenkins-security-advisory-av26-515</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/jenkins-security-advisory-av26-515"/><title><![CDATA[Jenkins security advisory (AV26-515)]]></title><updated>2026-05-27T19:02:51Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7749" about="/en/alerts-advisories/jenkins-security-advisory-av26-515" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-515<br /><strong>Date: </strong>May 27, 2026</p>

<p>On May 27, 2026, Jenkins published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>Active Directory Plugin – version 2.4.1 and prior</li>
	<li>AppSpider Plugin – version 1.0.17 and prior</li>
	<li>Bitbucket OAuth Plugin – version 0.17 and prior</li>
	<li>buildgraph-view Plugin – version 1.8 and prior</li>
	<li>Credentials Binding Plugin – version 720.v3f6decef43ea_ and prior</li>
	<li>Email Extension Plugin – version 1933.v45cec755423f and prior</li>
	<li>GitHub Integration Plugin – version 0.7.3 and prior</li>
	<li>Job Import Plugin – version 143.v044a_2e819b_27 and prior</li>
	<li>LDAP Plugin – version 807.v7d7de30930cf and prior</li>
	<li>Pipeline: Groovy Libraries Plugin – version 797.v90ea_a_9b_e45a_0 and prior</li>
	<li>Multijob Plugin – version 662.vd2e0001f6b_b_d and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.jenkins.io/security/advisory/2026-05-27/">Jenkins Security Advisory 2026-05-27</a></li>
	<li><a href="https://www.jenkins.io/security/advisories/">Jenkins Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/control-systems-phoenix-contact-security-advisory-av26-514</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/control-systems-phoenix-contact-security-advisory-av26-514"/><title><![CDATA[[Control Systems] Phoenix Contact Security Advisory (AV26-514)]]></title><updated>2026-05-27T17:43:26Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7748" about="/en/alerts-advisories/control-systems-phoenix-contact-security-advisory-av26-514" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number:</strong> AV26-514<br /><strong>Date:</strong> May 27, 2026</p>

<p>On May 27, 2026, Phoenix Contact published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>AXC F – multiple models and versions prior to 2026.0.3</li>
	<li>BCP 9102S – versions prior to 2026.0.3</li>
	<li>EPC 1522 – versions prior to 2026.0.3</li>
	<li>RFC 4072R – versions prior to 2026.0.3</li>
	<li>RFC 4072S – versions prior to 2026.0.3</li>
	<li>VL3 UPC 2440 EDGE – versions prior to 2026.0.3</li>
	<li>VPLCNEXT CONTROL – multiple models and versions prior to 2026.0.3</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates, once available.</p>

<ul class="list-unstyled"><li><a href="https://assets.phoenixcontact.com/file/a9721fd9-1ad4-495c-b341-15d3a5f363a9/media/original?pcsa-2026-00005_vde-2026-050.pdf">VDE-2026-050: Phoenix Contact: PLCnext Firmware Security Issues Related to APPs and Configuration Files (PDF)</a></li>
	<li><a href="https://www.phoenixcontact.com/en-pc/service-and-support/psirt">Phoenix Contact Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/veeam-security-advisory-av26-513</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/veeam-security-advisory-av26-513"/><title><![CDATA[Veeam security advisory (AV26-513)]]></title><updated>2026-05-27T17:38:14Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7747" about="/en/alerts-advisories/veeam-security-advisory-av26-513" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-513<br /><strong>Date:</strong> May 27, 2026</p>

<p>On May 27, 2026, Veeam published security advisories to address vulnerabilities in the following products:</p>

<ul><li>Veeam Backup &amp; Replication – 13 versions prior to 13.0.2.29</li>
	<li>Veeam ONE – versions prior to 13.0.2.6723</li>
	<li>Veeam Service Provider Console – 9.2 versions prior to 9.2.1.33875</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.veeam.com/kb4852">Vulnerabilities Resolved in Veeam Backup &amp; Replication 13.0.2</a></li>
	<li><a href="https://www.veeam.com/kb4856">List of Security Fixes and Improvements in Veeam Service Provider Console</a></li>
	<li><a href="https://www.veeam.com/kb4858">List of Security Fixes and Improvements in Veeam ONE</a></li>
	<li><a href="https://www.veeam.com/kb4853">Vulnerability Resolved in Veeam Service Provider Console 9.2.1</a></li>
	<li><a href="https://www.veeam.com/knowledge-base.html">Veeam Knowledge Base</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-may-2026-monthly-rollup-av26-456</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-may-2026-monthly-rollup-av26-456"/><title><![CDATA[Microsoft security advisory – May 2026 monthly rollup (AV26-456) – Update 1]]></title><updated>2026-05-27T17:20:21Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7686" about="/en/alerts-advisories/microsoft-security-advisory-may-2026-monthly-rollup-av26-456" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-456<br /><strong>Date: </strong>May 12, 2026<br /><strong>Updated:</strong> May 27, 2026</p>

<p>On May 12, 2026, Microsoft published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following products:</p>

<ul><li>.NET 10.0 installed on Linux</li>
	<li>.NET 10.0 installed on Mac OS</li>
	<li>.NET 10.0 installed on Windows</li>
	<li>.NET 8.0 installed on Linux</li>
	<li>.NET 8.0 installed on Mac OS</li>
	<li>.NET 8.0 installed on Windows</li>
	<li>.NET 9.0 installed on Linux</li>
	<li>.NET 9.0 installed on Mac OS</li>
	<li>.NET 9.0 installed on Windows</li>
	<li>Azure AI Foundry</li>
	<li>Azure Cloud Shell</li>
	<li>Azure Connected Machine Agent</li>
	<li>Azure DevOps</li>
	<li>Azure Logic Apps</li>
	<li>Azure Machine Learning</li>
	<li>Azure Managed Instance for Apache Cassandra</li>
	<li>Azure Monitor Action Group notification system</li>
	<li>Azure Monitor Agent</li>
	<li>Azure Monitor Agent Metrics Extension</li>
	<li>Azure SDK for Java</li>
	<li>Copilot Chat (Microsoft Edge)</li>
	<li>Dynamics 365 Customer Insights</li>
	<li>M365 Copilot for Desktop</li>
	<li>Microsoft .NET Framework 3.5</li>
	<li>Microsoft .NET Framework 3.5 AND 4.7.2</li>
	<li>Microsoft .NET Framework 3.5 AND 4.8</li>
	<li>Microsoft .NET Framework 3.5 AND 4.8.1</li>
	<li>Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2</li>
	<li>Microsoft .NET Framework 4.8</li>
	<li>Microsoft 365</li>
	<li>Microsoft 365 Copilot for Android</li>
	<li>Microsoft 365 Copilot's Business Chat</li>
	<li>Microsoft Confluence SAML SSO plugin</li>
	<li>Microsoft Data Formulator</li>
	<li>Microsoft Dynamics 365</li>
	<li>Microsoft Dynamics 365 Business Central</li>
	<li>Microsoft Edge (Chromium-based)</li>
	<li>Microsoft Enterprise Security Token Service (ESTS)</li>
	<li>Microsoft Excel 2016</li>
	<li>Microsoft Excel for Android</li>
	<li>Microsoft JIRA SAML SSO plugin</li>
	<li>Microsoft Office 2016</li>
	<li>Microsoft Office 2019</li>
	<li>Microsoft Office LTSC 2021</li>
	<li>Microsoft Office LTSC 2024</li>
	<li>Microsoft Office LTSC for Mac 2021</li>
	<li>Microsoft Office LTSC for Mac 2024</li>
	<li>Microsoft Office for Android</li>
	<li>Microsoft Outlook for iOS</li>
	<li>Microsoft Partner Center</li>
	<li>Microsoft PowerPoint for Android</li>
	<li>Microsoft SQL Server 2016</li>
	<li>Microsoft SQL Server 2017</li>
	<li>Microsoft SQL Server 2019</li>
	<li>Microsoft SQL Server 2022</li>
	<li>Microsoft SQL Server 2025</li>
	<li>Microsoft SharePoint Enterprise Server 2016</li>
	<li>Microsoft SharePoint Server 2019</li>
	<li>Microsoft SharePoint Server Subscription Edition</li>
	<li>Microsoft Teams</li>
	<li>Microsoft Teams for Android</li>
	<li>Microsoft Visual Studio 2017</li>
	<li>Microsoft Visual Studio 2019</li>
	<li>Microsoft Visual Studio 2022</li>
	<li>Microsoft Visual Studio 2026</li>
	<li>Microsoft Word 2016</li>
	<li>Microsoft Word for Android</li>
	<li>Office Online Server</li>
	<li>Power Automate for Desktop</li>
	<li>Visual Studio Code</li>
	<li>Visual Studio Code - Live Preview extension</li>
	<li>Windows 10</li>
	<li>Windows 11</li>
	<li>Windows Admin Center</li>
	<li>Windows Admin Center in Azure Portal</li>
	<li>Windows Server 2012</li>
	<li>Windows Server 2016</li>
	<li>Windows Server 2019</li>
	<li>Windows Server 2025</li>
</ul><h2>Update 1</h2>

<p>On May 21, 2026, Microsoft published an out-of-band (OOB) security update to address CVE-2026-45659, an additional vulnerability impacting Microsoft SharePoint Enterprise Server 2019, Microsoft SharePoint Server 2016 and Microsoft SharePoint Server Subscription Edition. The CVE was inadvertently omitted from the May 2026 Security Updates.</p>

<p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://msrc.microsoft.com/update-guide/releaseNote/2026-May">May 2026 Security Updates</a></li>
	<li><a href="https://msrc.microsoft.com/update-guide/en-us">Security Update Guide</a></li>
	<li><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45659">Microsoft SharePoint Remote Code Execution Vulnerability CVE-2026-45659</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/github-security-advisory-av26-512</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/github-security-advisory-av26-512"/><title><![CDATA[GitHub security advisory (AV26-512)]]></title><updated>2026-05-27T17:18:33Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7746" about="/en/alerts-advisories/github-security-advisory-av26-512" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-512<br /><strong>Date:</strong> May 27, 2026</p>

<p>On May 26, 2026, GitHub published security advisories to address vulnerabilities in the following products:</p>

<ul><li>GitHub Enterprise Server – versions 3.20.x prior to 3.20.3</li>
	<li>GitHub Enterprise Server – versions 3.19.x prior to 3.19.7</li>
	<li>GitHub Enterprise Server – versions 3.18.x prior to 3.18.10</li>
	<li>GitHub Enterprise Server – versions 3.17.x prior to 3.17.16</li>
	<li>GitHub Enterprise Server – versions 3.16.x prior to 3.16.19</li>
</ul><p><strong>GitHub has stated that future patches and releases will be signed with a new public key, and customers will need to rotate to the new key before those patches and releases can be installed.</strong></p>

<p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://docs.github.com/en/enterprise-server@3.20/admin/release-notes">Enterprise Server 3.20.3</a></li>
	<li><a href="https://docs.github.com/en/enterprise-server@3.19/admin/release-notes">Enterprise Server 3.19.7</a></li>
	<li><a href="https://docs.github.com/en/enterprise-server@3.18/admin/release-notes">Enterprise Server 3.18.10</a></li>
	<li><a href="https://docs.github.com/en/enterprise-server@3.17/admin/release-notes">Enterprise Server 3.17.16</a></li>
	<li><a href="https://docs.github.com/en/enterprise-server@3.16/admin/release-notes">Enterprise Server 3.16.19</a></li>
	<li><a href="https://github.blog/security/investigating-unauthorized-access-to-githubs-internal-repositories/">Investigation update: GitHub Enterprise Server signing key rotation</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/hitachi-security-advisory-av26-511</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/hitachi-security-advisory-av26-511"/><title><![CDATA[Hitachi security advisory (AV26-511)]]></title><updated>2026-05-27T16:04:09Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7745" about="/en/alerts-advisories/hitachi-security-advisory-av26-511" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-511<br /><strong>Date: </strong>May 27, 2026</p>

<p>On May 26, 2026, Hitachi published security advisories to address vulnerabilities in the following products:</p>

<ul><li>Cosminexus Developer's Kit for Java</li>
	<li>Hitachi Automation Director – all versions</li>
	<li>Hitachi Configuration Manager – all versions</li>
	<li>Hitachi Compute Systems Manager – all versions</li>
	<li>Hitachi Developer's Kit for Java</li>
	<li>Hitachi Device Manager – all versions</li>
	<li>Hitachi Dynamic Link Manager – versions prior to 9.0.0-00</li>
	<li>Hitachi Global Link Manager – all versions</li>
	<li>Hitachi Infrastructure Analytics Advisor (English version) – multiple components and versions</li>
	<li>Hitachi Ops Center Administrator (English version) – all versions</li>
	<li>Hitachi Ops Center Analyzer (English Version) – multiple components and versions</li>
	<li>Hitachi Ops Center Analyzer Common Services – all versions</li>
	<li>Hitachi Ops Center Analyzer Viewpoint (English version) – versions 10.8.1-00 to versions prior to 11.0.8-00</li>
	<li>Hitachi Ops Center API Configuration Manager – all versions</li>
	<li>Hitachi Ops Center Automator – all versions</li>
	<li>Hitachi Ops Center Viewpoint (Japanese version) – all versions</li>
	<li>Hitachi Replication Manager – versions prior to 9.0.0-00</li>
	<li>Hitachi Tiered Storage Manager – all versions</li>
	<li>Hitachi Tuning Manager – all versions</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links, perform the suggested mitigations and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2026-120/index.html">Vulnerability in Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center Analyzer and Hitachi Ops Center Analyzer viewpoint</a></li>
	<li><a href="https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2026-121/index.html">Multiple Vulnerabilities in Cosminexus</a></li>
	<li><a href="https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2026-122/index.html">Multiple Vulnerabilities in Hitachi Command Suite, Hitachi Automation Director, Hitachi Configuration Manager, Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center</a></li>
	<li><a href="https://www.hitachi.com/products/it/software/security/index.html">Hitachi Vulnerability Information</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/control-systems-abb-security-advisory-av26-510</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/control-systems-abb-security-advisory-av26-510"/><title><![CDATA[[Control systems] ABB security advisory (AV26-510)]]></title><updated>2026-05-26T14:33:00Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7744" about="/en/alerts-advisories/control-systems-abb-security-advisory-av26-510" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-510<br /><strong>Date: </strong>May 26, 2026</p>

<p>On May 26, 2026, ABB published a security advisory to address a vulnerability in the following product:</p>

<ul><li>PPT30 Operating System – versions prior to 1.8.0</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and perform the suggested mitigations.</p>

<ul class="list-unstyled"><li><a href="https://br-cws-assets.de-fra-1.linodeobjects.com/SA25P006-0eec719c.pdf">PPT30 OPC-UA Server has issues handling concurrent connections (CVE-2025-11482) (PDF)</a></li>
	<li><a href="https://global.abb/group/en/technology/cyber-security/alerts-and-notifications">ABB Cyber security alerts and notifications</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/control-systems-moxa-security-advisory-av26-509</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/control-systems-moxa-security-advisory-av26-509"/><title><![CDATA[[Control Systems] Moxa security advisory (AV26-509)]]></title><updated>2026-05-26T12:59:13Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7743" about="/en/alerts-advisories/control-systems-moxa-security-advisory-av26-509" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-509<br /><strong>Date: </strong>May 26, 2026</p>

<p>On May 26, 2026, Moxa published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>UC-1200A/2200A/3400A/4400A/8600A/8200 Series – multiple versions and models</li>
	<li>V1200 Series – version MIL3 v1.2.0 and prior</li>
	<li>V3200 Series – version MIL3 v1.1 and prior</li>
	<li>V3400 Series – version MIL3 v1.1 and prior</li>
	<li>VM-1220 Series – version MIL3 v1.1.0 and prior</li>
	<li>ioThinx 4530 Series – version MIL3 v2.1 and prior</li>
	<li>AIG-302 Series – version v1.4.0 and prior</li>
	<li>AIG-502 Series – version v1.0.0</li>
	<li>BXP-A100 Series – version Debian 11 V1.0</li>
	<li>BXP-A101 Series – version Debian 12 V1.0</li>
	<li>DRP-A100 Series – version Debian 11 V1.0</li>
	<li>RKP-A110 Series – version Debian 11 V1.0</li>
	<li>RKP-C110 Series – version Debian 12 V1.0</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.moxa.com/en/support/product-support/security-advisory/mpsa-263140-cve-2026-31431,-cve-2026-43284,-cve-2026-43500-copy-fail-and-dirty-frag-vulnerabilities-in-linux-kernel">CVE-2026-31431, CVE-2026-43284, CVE-2026-43500: Copy Fail and Dirty Frag Vulnerabilities in Linux Kernel</a></li>
	<li><a href="https://www.moxa.com/en/support/product-support/security-advisory">Moxa Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-508</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-508"/><title><![CDATA[cPanel security advisory (AV26-508)]]></title><updated>2026-05-25T14:30:43Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7742" about="/en/alerts-advisories/cpanel-security-advisory-av26-508" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-508<br /><strong>Date:</strong> May 25, 2026<strong>                               </strong><br /><br />
On May 22, 2026, cPanel published a security advisory to address a vulnerability in the following products:</p>

<ul><li>ea-nginx – version v1.31.0</li>
	<li>ea-nginx-passenger – version v6.1.2</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.cpanel.net/hc/en-us/articles/40670279527831-Security-CVE-2026-9256-ea-nginx-v1-31-1-Security-Release-May-22-2026">Security: CVE-2026-9256 ea-nginx v1.31.1 Security Release - May 22, 2026</a></li>
	<li><a href="https://support.cpanel.net/hc/en-us/sections/360007088193-Security">cPanel Security</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/red-hat-security-advisory-av26-507</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/red-hat-security-advisory-av26-507"/><title><![CDATA[Red Hat security advisory (AV26-507)]]></title><updated>2026-05-25T14:26:13Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7741" about="/en/alerts-advisories/red-hat-security-advisory-av26-507" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-507<br /><strong>Date: </strong>May 25, 2026</p>

<p>Between May 18 and 24, 2026, Red Hat published security advisories to address vulnerabilities in multiple products. Included were updates to address vulnerabilities in the Linux kernel for the following products:</p>

<ul><li>Red Hat CodeReady Linux Builder – multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux – multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux Server – multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux for Real Time – multiple versions and platforms</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://access.redhat.com/security/security-updates/security-advisories">Red Hat Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-506</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-506"/><title><![CDATA[[Control systems] CISA ICS security advisories (AV26–506)]]></title><updated>2026-05-25T14:16:16Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7740" about="/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-506" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26–506<br /><strong>Date: </strong>May 25, 2026</p>

<p><strong>[Control systems] CISA ICS security advisories (AV26–506)</strong></p>

<p>Between May 18 and 24, 2026, CISA published ICS advisories to address vulnerabilities in the following products:</p>

<ul><li>ABB B&amp;R Automation Runtime – versions prior to 6.4</li>
	<li>ABB B&amp;R Automation Studio – versions prior to 6.5</li>
	<li>ABB B&amp;R PCs – multiple versions and models</li>
	<li>ABB CoreSense HM – version 2.3.1 and prior</li>
	<li>ABB CoreSense M10 – version 1.4.1.12 and prior</li>
	<li>ABB Terra AC Wallbox (JP) – versions 1.8.33 and prior</li>
	<li>Abb B&amp;R Automation Studio – versions prior to 6.5</li>
	<li>Hitachi Energy GMS600 – versions 1.3.0 to 1.3.1</li>
	<li>Kieback &amp; Peter DDC Building Controllers – multiple versions and models</li>
	<li>ScadaBR – version 1.2.0</li>
	<li>Siemens RUGGEDCOM APE1808 – all versions</li>
	<li>ZKTeco CCTV Cameras – firmware version prior to V5.0.1.2.20260421</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link, perform the suggested mitigations and apply the necessary updates if available.</p>

<ul class="list-unstyled"><li><a href="https://www.cisa.gov/news-events/cybersecurity-advisories">CISA ICS Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/ubuntu-security-advisory-av26-505</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/ubuntu-security-advisory-av26-505"/><title><![CDATA[Ubuntu security advisory (AV26-505)]]></title><updated>2026-05-25T14:10:56Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7739" about="/en/alerts-advisories/ubuntu-security-advisory-av26-505" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-505<br /><strong>Date:</strong> May 25, 2026</p>

<p>Between May 18 and 24, 2026, Ubuntu published security notices to address vulnerabilities in the Linux kernel affecting the following products:</p>

<ul><li>Ubuntu 14.04 LTS</li>
	<li>Ubuntu 16.04 LTS</li>
	<li>Ubuntu 18.04 LTS</li>
	<li>Ubuntu 20.04 LTS</li>
	<li>Ubuntu 22.04 LTS</li>
	<li>Ubuntu 24.04 LTS</li>
	<li>Ubuntu 25.10</li>
</ul><p>The Cyber Centre encourages users and administrators to review the web link provided and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://ubuntu.com/security/notices">Ubuntu Security Notices</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/dell-security-advisory-av26-504</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/dell-security-advisory-av26-504"/><title><![CDATA[Dell security advisory (AV26-504)]]></title><updated>2026-05-25T14:04:42Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7738" about="/en/alerts-advisories/dell-security-advisory-av26-504" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-504<br /><strong>Date:</strong> May 25, 2026<strong> </strong></p>

<p>Between May 18 and 24, 2026, Dell published security advisories to address vulnerabilities in multiple products:</p>

<ul><li>Dell Networking OS10 – versions prior to 10.5.6.13</li>
	<li>SmartFabric Storage Software – versions prior to 1.4.5</li>
	<li>Dell Container Storage Modules – versions 1.6.0 to 1.16.3</li>
	<li>Dell Container Storage Modules – versions 1.11.0 to 1.16.3</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.dell.com/support/kbdoc/en-ca/000466930/dsa-2026-161-security-update-for-dell-networking-os10-vulnerabilities">DSA-2026-161: Security Update for Dell Networking OS10 Vulnerabilities</a></li>
	<li><a href="https://www.dell.com/support/kbdoc/en-ca/000466942/dsa-2026-235-security-update-for-dell-networking-smartfabric-storage-software-vulnerabilities">DSA-2026-235: Security Update for Dell Networking SmartFabric Storage Software Vulnerabilities</a></li>
	<li><a href="https://www.dell.com/support/kbdoc/en-ca/000467149/dsa-2026-234-security-update-for-dell-container-storage-modules-hard-coded-credentials-vulnerability">DSA-2026-234: Security Update for Dell Container Storage Modules Hard-coded Credentials Vulnerability</a></li>
	<li><a href="https://www.dell.com/support/security/en-ca">Dell Security advisories and notices</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/roundcube-security-advisory-av26-503</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/roundcube-security-advisory-av26-503"/><title><![CDATA[Roundcube security advisory (AV26-503)]]></title><updated>2026-05-25T13:58:18Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7737" about="/en/alerts-advisories/roundcube-security-advisory-av26-503" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-503<br /><strong>Date:</strong> May 25, 2026</p>

<p>On May 24, 2026, Roundcube published security advisories to address vulnerabilities in the following product: </p>

<ul><li>Roundcube Webmail – versions prior to 1.6.16</li>
	<li>Roundcube Webmail – versions prior to 1.7.1</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://github.com/roundcube/roundcubemail/releases/tag/1.6.16">Roundcube Webmail 1.6.16</a></li>
	<li><a href="https://github.com/roundcube/roundcubemail/releases/tag/1.7.1">Roundcube Webmail 1.71</a></li>
	<li><a href="https://roundcube.net/">Roundcube Open Source Webmail Software</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-502-0</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-502-0"/><title><![CDATA[IBM security advisory (AV26-502)]]></title><updated>2026-05-25T13:49:45Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7736" about="/en/alerts-advisories/ibm-security-advisory-av26-502-0" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-502<br /><strong>Date: </strong>May 25, 2026</p>

<p>Between May 18 and 24, 2026, IBM published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following:</p>

<ul><li>API Connect – versions V10.0.8.0 to 10.0.8.8</li>
	<li>Analyst Workflow – versions 2.0.0 to 3.0.0</li>
	<li>Data Cataloging – versions 2.1.8 to 2.5.1</li>
	<li>DevOps Test Performance – versions 11.0 to 11.0.6</li>
	<li>IBM App Connect Enterprise Certified Containers Operands – multiple versions</li>
	<li>IBM App Connect Enterprise – versions 12.0.1.0 to 12.0.12.25</li>
	<li>IBM App Connect Enterprise – versions 13.0.1.0 to 13.0.7.1</li>
	<li>IBM App Connect Operator – multiple versions</li>
	<li>IBM App Connect for Manufacturing – versions 13.0.0.0 to 13.0.1.0</li>
	<li>IBM Aspera High-Speed Transfer Endpoint – versions 3.7.4 to 4.4.7 Fix Pack 1</li>
	<li>IBM Aspera High-Speed Transfer Server – versions 3.7.4 to 4.4.7 Fix Pack 1</li>
	<li>IBM Cognos Analytics Mobile – versions 1.1.0 to 1.1.25</li>
	<li>IBM Data Studio client – version 4.2.2</li>
	<li>IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data – multiple versions</li>
	<li>IBM DevOps Code ClearCase – version 11.0</li>
	<li>IBM Fusion HCI – versions 2.10.0 to 2.12.1</li>
	<li>IBM Fusion – versions 2.9.0 to 2.12.1</li>
	<li>IBM Guardium Data Protection – versions 12.0, 12.1 and 12.2</li>
	<li>IBM Library Support for Spring – versions 3.2 to 3.2.25</li>
	<li>IBM Library Support for Spring – version 3.4 to 3.4.16</li>
	<li>IBM MQ Agent – version v1.0.0</li>
	<li>IBM Rational ClearCase – version 10.0.0</li>
	<li>IBM Rational ClearCase – version 9.1</li>
	<li>IBM SPSS Analytic Server – multiple versions</li>
	<li>IBM Security Verify Access OIDC Provider – versions 22.09 to 26.03</li>
	<li>IBM Sterling Transformation Extender – versions 11.0.1.1 and 11.0.2.0</li>
	<li>IBM Storage Defender - Data Protect – versions 2.0.0 to 2.1.3</li>
	<li>IBM Storage Defender - Resiliency Service – versions 2.0.0 to 2.1.3</li>
	<li>IBM Watson Speech Services Cartridge – versions 4.0.0 to 5.3.1</li>
	<li>IBM voice-gateway/media-relay – version 1.0.8.31</li>
	<li>IBM voice-gateway/sip-orchestrator – version 1.0.8.25</li>
	<li>IBM voice-gateway/sms-gateway – version 1.0.8.19</li>
	<li>IBM voice-gateway/stt-adapter – version 1.0.8.20</li>
	<li>IBM voice-gateway/tts-adapter – version 1.0.8.20</li>
	<li>IBM watsonx Code Assistant On Prem – multiple versions</li>
	<li>IBM watsonx Orchestrate Cartridge for IBM Cloud Pak for Data – versions 4.8.4 to 4.8.5</li>
	<li>IBM watsonx Orchestrate Cartridge for IBM Cloud Pak for Data – versions 5.0.0 to 5.3.1</li>
	<li>IBM watsonx Orchestrate Developer Edition – versions 1.4.0 to 2.9.0</li>
	<li>Langflow OSS – versions 1.0.0 to 1.9.1</li>
	<li>Rational Business Developer (RBD) – versions 9.6 to 9.6.1.1</li>
	<li>Rational Business Developer (RBD) – versions 9.7 to 9.7.1</li>
	<li>Rational Performance Tester – multiple versions</li>
	<li>SPSS Collaboration and Deployment Services – multiple versions</li>
	<li>z/Transaction Processing Facility – version 1.1</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.ibm.com/support/pages/bulletin/">IBM Product Security Incident Response</a><u> </u><u> </u></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/drupal-security-advisory-av26-492</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/drupal-security-advisory-av26-492"/><title><![CDATA[Drupal security advisory (AV26-492) - Update 2]]></title><updated>2026-05-22T19:39:54Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7725" about="/en/alerts-advisories/drupal-security-advisory-av26-492" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-492<br /><strong>Date:</strong> May 20, 2026<br /><strong>Updated:</strong> May 22, 2026</p>

<p>On May 20, 2026, Drupal published a security advisory to address a critical vulnerability in the following product:</p>

<ul><li>Drupal Core – multiple versions</li>
</ul><h2 class="h3">Update 1</h2>

<p>Drupal has indicated that exploit attempts for CVE-2026-9082 are now being detected in the wild.</p>

<h2 class="h3">Update 2</h2>

<p>On May 22, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-9082 to their Known Exploited Vulnerabilities (KEV) Database.</p>

<p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates or perform the suggested mitigations.</p>

<ul class="list-unstyled"><li><a href="https://www.drupal.org/sa-core-2026-004">Drupal core - Highly critical - SQL injection - SA-CORE-2026-004</a></li>
	<li><a href="https://www.drupal.org/security">Drupal Security Advisories</a></li>
  <li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-9082">CISA KEV: CVE-2026-9082</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/f5-security-advisory-av26-501</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/f5-security-advisory-av26-501"/><title><![CDATA[F5 security advisory (AV26-501)]]></title><updated>2026-05-22T16:02:13Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7734" about="/en/alerts-advisories/f5-security-advisory-av26-501" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-501<br /><strong>Date: </strong>May 22, 2026</p>

<p>On May 22, 2026, F5 published a security advisory to address a critical vulnerability in the following products:</p>

<ul><li>NGINX Plus – multiple versions</li>
	<li>NGINX Open Source – multiple versions</li>
	<li>NGINX Instance Manager – versions 2.17.0 to 2.22.0</li>
	<li>F5 WAF for NGINX – versions 5.9.0 to 5.13.0</li>
	<li>NGINX App Protect WAF – multiple versions</li>
	<li>F5 DoS for NGINX – version 4.9.0</li>
	<li>NGINX App Protect DoS – versions 4.3.0 to 4.7.0</li>
	<li>NGINX Gateway Fabric – multiple versions</li>
	<li>NGINX Ingress Controller – multiple versions</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://my.f5.com/manage/s/article/K000161377">K000161377: NGINX ngx_http_rewrite_module vulnerability CVE-2026-9256</a></li>
	<li><a href="https://my.f5.com/manage/s/new-updated-articles#f-f5_document_type=Security%20Advisory">MyF5</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-500</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-500"/><title><![CDATA[HPE security advisory (AV26-500)]]></title><updated>2026-05-22T15:55:49Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7733" about="/en/alerts-advisories/hpe-security-advisory-av26-500" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-500<br /><strong>Date: </strong>May 22, 2026</p>

<p>On May 22, 2026, HPE published a security advisory to address vulnerabilities in the following product:</p>

<ul><li>HPE Telco Universal SLA Management – version 4.6 and prior.</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05058en_us&amp;docLocale=en_US#hpesbnw05058-rev-1-hpe-telco-universal-sla-managem-0">HPESBNW05058 rev.1 - HPE Telco Universal SLA Management, Multiple Vulnerabilities</a></li>
	<li><a href="https://support.hpe.com/connect/s/securitybulletinlibrary?language=en_US">HPE Security Bulletin Library</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-499</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-499"/><title><![CDATA[cPanel security advisory (AV26-499)]]></title><updated>2026-05-22T15:44:53Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7732" about="/en/alerts-advisories/cpanel-security-advisory-av26-499" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-499<br /><strong>Date:</strong> May 22, 2026</p>

<p>On May 21, 2026, cPanel published security advisories to address vulnerabilities in the following products:</p>

<ul><li>cPanel &amp; WebHost Manager (WHM) software – version 11.126.0.63 and later, version 11.134.0.30 and later, version 11.136.0.14 and later, WP Squared 11.138.1.1 and later</li>
	<li>EasyApache4 – versions prior to v25.62</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.cpanel.net/hc/en-us/articles/40646746647703-Security-CVE-2026-33278-cpanel-unbound-1-25-1-Security-Release-May-21-2026">Security: CVE-2026-33278 cpanel-unbound 1.25.1 Security Release - May 21, 2026</a></li>
	<li><a href="https://support.cpanel.net/hc/en-us/articles/40646970590999-Security-EasyApache4-v25-62-Security-Release-May-21-2026">Security: EasyApache4 v25.62 Security Release - May 21, 2026</a></li>
	<li><a href="https://support.cpanel.net/hc/en-us/sections/360007088193-Security">cPanel Security</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/ubiquiti-security-advisory-av26-498</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/ubiquiti-security-advisory-av26-498"/><title><![CDATA[Ubiquiti security advisory (AV26-498)]]></title><updated>2026-05-22T15:37:51Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7731" about="/en/alerts-advisories/ubiquiti-security-advisory-av26-498" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-498<br /><strong>Date:</strong> May 22, 2026</p>

<p>On May 21, 2026, Ubiquiti published a security advisory to address vulnerabilities in the following products. Included were critical updates for the following:</p>

<ul><li>Express – version 4.0.13 and prior</li>
	<li>UCG-Industrial – version 5.0.13 and prior</li>
	<li>UDM, UDM-Pro, UDM-SE, UDM-Pro-Max, EFG, UDW, UDR, UDR7, Express 7, UNVR, UNVR-Pro, UNVR-Instant, ENVR, UCG-Ultra, UCG-Max and UCG-Fiber – version 5.0.16 and prior</li>
	<li>UDM-Beast, UNAS-2, UNAS-4, UNAS-Pro, UNAS-Pro-4 and UNAS-Pro-8 – version 5.1.8 and prior</li>
	<li>UDR-5G, ENVR-Core, UCKP, UCK and UCK-Enterprise – version 5.0.17 and prior</li>
	<li>UNVR-G2 and UNVR-G2-Pro – version 5.1.11 and prior</li>
	<li>UniFi OS Server – version 5.0.6 and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-4cf4-42ab-bd61-cc994445963b">Ubiquiti UniFi - Security Advisory Bulletin 064</a></li>
	<li><a href="https://community.ui.com/releases">Ubiquiti UniFi Security Releases</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/microsoft-edge-security-advisory-av26-497</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/microsoft-edge-security-advisory-av26-497"/><title><![CDATA[Microsoft Edge security advisory (AV26-497)]]></title><updated>2026-05-22T15:31:23Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7730" about="/en/alerts-advisories/microsoft-edge-security-advisory-av26-497" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-497<br /><strong>Date:</strong> May 22, 2026</p>

<p>On May 21, 2026, Microsoft published a security update to address vulnerabilities in the following product:</p>

<ul><li>Microsoft Edge Stable Channel – versions prior to 148.0.3967.83</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary update.</p>

<ul class="list-unstyled"><li><a href="https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#may-21st-2026">Microsoft Edge Stable Channel Release Notes</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/trend-micro-security-advisory-av26-494</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/trend-micro-security-advisory-av26-494"/><title><![CDATA[Trend Micro security advisory (AV26-494) – Update 1]]></title><updated>2026-05-21T19:40:00Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7727" about="/en/alerts-advisories/trend-micro-security-advisory-av26-494" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-494<br /><strong>Date: </strong>May 21, 2026</p>

<p>On May 21, 2026, Trend Micro published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>Apex One (on-premise) – server/agent builds prior to 2019 (on-prem) build 17079</li>
	<li>Apex One as a service – SaaS</li>
	<li>Trend Vision One Endpoint - SEP – agent builds prior to 14.0.20731</li>
</ul><h2>Update 1</h2>

<p>On May 21, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-34926 to their Known Exploited Vulnerabilities (KEV) Database.</p>

<p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://success.trendmicro.com/en-US/solution/KA-0023430">ITW SECURITY BULLETIN: Apex One and Vision One – Standard Endpoint Protection (SEP) May 2026 Security Bulletin</a></li>
	<li><a href="https://success.trendmicro.com/en-US/vulnerability-response/">Trend Micro Business Success Vulnerability Response</a></li>
	<li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-34926">CISA KEV: CVE-2026-34926</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/connectwise-security-advisory-av26-496</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/connectwise-security-advisory-av26-496"/><title><![CDATA[ConnectWise security advisory (AV26-496)]]></title><updated>2026-05-21T17:42:51Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7729" about="/en/alerts-advisories/connectwise-security-advisory-av26-496" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-496<br /><strong>Date: </strong>May 21, 2026</p>

<p>On May 21, 2026, ConnectWise published a security advisory to address a vulnerability in the following product:</p>

<ul><li>ConnectWise Automate – versions prior to 2026.5</li>
</ul><p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.connectwise.com/company/trust/security-bulletins/2026-05-21-connectwise-automate-bulletin">ConnectWise Automat 2026.5 Security Update</a></li>
	<li><a href="https://www.connectwise.com/company/trust/security-bulletins">ConnectWise - Security Bulletins</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/freebsd-security-advisory-av26-495</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/freebsd-security-advisory-av26-495"/><title><![CDATA[FreeBSD security advisory (AV26-495)]]></title><updated>2026-05-21T13:56:55Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7728" about="/en/alerts-advisories/freebsd-security-advisory-av26-495" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-495<br /><strong>Date: </strong>May 21, 2026</p>

<p>On May 20, 2026, FreeBSD published security advisories to address vulnerabilities in the following product:</p>

<ul><li>FreeBSD – all supported versions</li>
</ul><p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.freebsd.org/security/advisories/">FreeBSD Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/splunk-security-advisory-av26-493</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/splunk-security-advisory-av26-493"/><title><![CDATA[Splunk security advisory (AV26-493)]]></title><updated>2026-05-20T19:24:03Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7726" about="/en/alerts-advisories/splunk-security-advisory-av26-493" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-493<br /><strong>Date: </strong>May 20, 2026</p>

<p>On May 20, 2026, Splunk published security advisories to address vulnerabilities in the following products. Included were critical updates for the following:</p>

<ul><li>Splunk User Behavior Analytics – versions prior to 5.4.5</li>
	<li>Splunk AppDynamics Machine Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Java Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Private Synthetic Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Python Agent – versions prior to 26.4.1</li>
	<li>Splunk AppDynamics Cluster Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Database Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Analytics Agent – versions prior to 26.4.0</li>
	<li>Splunk AppDynamics Apache Web Server Agent – versions prior to 25.11.1</li>
	<li>Splunk Universal Forwarder – versions 9.4.0 to 9.4.10</li>
	<li>Splunk Enterprise – multiple versions and platforms</li>
	<li>Splunk Cloud Platform – multiple versions and platforms</li>
	<li>Splunk AI Toolkit – versions prior to 5.7.3</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://advisory.splunk.com/">Splunk Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/cisco-security-advisory-av26-491</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/cisco-security-advisory-av26-491"/><title><![CDATA[Cisco security advisory (AV26-491)]]></title><updated>2026-05-20T19:06:36Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7724" about="/en/alerts-advisories/cisco-security-advisory-av26-491" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-491<br /><strong>Date:</strong> May 20, 2026</p>

<p>On May 20, 2026, Cisco published security advisories to address vulnerabilities in multiple products. Included was a critical update for the following:</p>

<ul><li>Cisco Secure Workload – version 3.9 and prior</li>
	<li>Cisco Secure Workload – versions prior to 3.10.8.3</li>
	<li>Cisco Secure Workload – versions prior to 4.0.3.17</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-csw-pnbsa-g8WEnuy">Cisco Secure Workload Unauthorized API Access Vulnerability</a></li>
	<li><a href="https://tools.cisco.com/security/center/publicationListing.x">Cisco Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/isc-bind-security-advisory-av26-490</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/isc-bind-security-advisory-av26-490"/><title><![CDATA[ISC BIND security advisory (AV26-490)]]></title><updated>2026-05-20T17:23:00Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7723" about="/en/alerts-advisories/isc-bind-security-advisory-av26-490" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-490<br /><strong>Date: </strong>May 20, 2026</p>

<p>On May 20, 2026, ISC published security advisories to address vulnerabilities in the following products:</p>

<ul><li>ISC BIND 9 – versions 9.0.0 to 9.16.50</li>
	<li>ISC BIND 9 – versions 9.18.0 to 9.18.48</li>
	<li>ISC BIND 9 – versions 9.20.0 to 9.20.22</li>
	<li>ISC BIND 9 – versions 9.21.0 to 9.21.21</li>
	<li>BIND Supported Preview Edition – versions 9.9.3-S1 to 9.16.50-S1</li>
	<li>BIND Supported Preview Edition – versions 9.18.11-S1 to 9.18.48-S1</li>
	<li>BIND Supported Preview Edition – versions 9.20.9-S1 to 9.20.22-S1</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://kb.isc.org/docs/cve-2026-3039">CVE-2026-3039: BIND 9 server memory exhaustion during GSS-API TKEY negotiation</a></li>
	<li><a href="https://kb.isc.org/docs/cve-2026-5947">CVE-2026-5947: SIG(0) validation during query flood may lead to undefined behavior</a></li>
	<li><a href="https://kb.isc.org/docs/cve-2026-5946">CVE-2026-5946: Invalid handling of CLASS != IN</a></li>
	<li><a href="https://kb.isc.org/docs/cve-2026-3593">CVE-2026-3593: Heap use-after-free vulnerability in BIND 9 DNS-over-HTTPS implementation</a></li>
	<li><a href="https://kb.isc.org/docs/aa-00913">BIND 9 Security Vulnerability Matrix</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-av26-489</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-av26-489"/><title><![CDATA[Microsoft security advisory (AV26-489)]]></title><updated>2026-05-20T17:16:09Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7722" about="/en/alerts-advisories/microsoft-security-advisory-av26-489" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-489<br /><strong>Date:</strong> May 20, 2026</p>

<p>On May 18 and 19, 2026, Microsoft published security advisories to address vulnerabilities, including some critical ones, in the following products:</p>

<ul><li>Microsoft Azure Local</li>
	<li>Microsoft Azure Resource Manager</li>
	<li>Microsoft Azure Portal Windows Admin Center</li>
	<li>Microsoft Bitlocker</li>
	<li>Microsoft Malware Protection Engine – versions prior to 1.1.26040.8</li>
	<li>Microsoft Defender – versions prior to 4.18.26040.7</li>
</ul><p>On May 20, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-41091 and CVE-2026-45498 to their Known Exploited Vulnerabilities (KEV) Database.</p>

<p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates, when available.</p>

<ul class="list-unstyled"><li><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42822">Azure Local Disconnected Operations (ALDO) Elevation of Privilege Vulnerability</a></li>
	<li><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45584">Microsoft Defender Remote Code Execution Vulnerability</a></li>
	<li><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-41091">Microsoft Defender Elevation of Privilege Vulnerability</a></li>
	<li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-41091">CISA KEV: CVE-2026-41091</a></li>
	<li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-45498">CISA KEV: CVE-2026-45498</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-488</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/cpanel-security-advisory-av26-488"/><title><![CDATA[cPanel security advisory (AV26-488)]]></title><updated>2026-05-20T15:35:04Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7721" about="/en/alerts-advisories/cpanel-security-advisory-av26-488" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-488<br /><strong>Date:</strong> May 20, 2026</p>

<p>On May 19, 2026, cPanel published security advisories to address vulnerabilities in the following product:</p>

<ul><li>cPanel &amp; WebHost Manager (WHM) software – version 11.86.0.45, 11.94.0.32, 11.102.0.43, 11.110.0.120 (cl6110), 11.110.0.121, 11.118.0.68, 11.124.0.41, 11.126.0.62, 11.130.0.26, 11.132.0.35, 11.134.0.29, 11.136.0.13 and WP Squared 11.136.1.16 and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.cpanel.net/hc/en-us/articles/40555378241943-Security-SEC-73728-cPanel-WHM-WP2-Security-Update-May-19-2026">Security: SEC-73728 cPanel &amp; WHM / WP2 Security Update - May 19, 2026</a></li>
	<li><a href="https://support.cpanel.net/hc/en-us/articles/40555594160023-Security-SEC-73755-cPanel-WHM-WP2-Security-Update-May-19-2026">Security: SEC-73755 cPanel &amp; WHM / WP2 Security Update - May 19, 2026</a></li>
	<li><a href="https://support.cpanel.net/hc/en-us/sections/360008753193-Support-Topics">cPanel Support Topics</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-487</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-487"/><title><![CDATA[HPE security advisory (AV26-487)]]></title><updated>2026-05-20T15:29:08Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7720" about="/en/alerts-advisories/hpe-security-advisory-av26-487" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-487<br /><strong>Date: </strong>May 20, 2026</p>

<p>On May 19, 2026, HPE published a security advisory to address a vulnerability in the following product:</p>

<ul><li>HPE Aruba Networking Management Software (Airwave) – version 8.3.0.6 and prior</li>
	<li>HPE Aruba Networking AOS-CX – multiple versions</li>
	<li>HPE Aruba Networking EdgeConnect Orchestrator – all versions</li>
	<li>HPE Aruba Networking Analytics and Location Engine (ALE) – all versions</li>
	<li>HPE Aruba Networking Meridian Asset Tracking – all versions</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05059en_us&amp;docLocale=en_US">HPESBNW05059 rev.1 - Status of Copy Fail Vulnerability on HPE Aruba Networking Products (CVE-2026-31431)</a></li>
	<li><a href="https://support.hpe.com/connect/s/securitybulletinlibrary?language=en_US">HPE Security Bulletin Library</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/google-chrome-security-advisory-av26-486</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/google-chrome-security-advisory-av26-486"/><title><![CDATA[Google Chrome security advisory (AV26-486)]]></title><updated>2026-05-20T15:24:06Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7719" about="/en/alerts-advisories/google-chrome-security-advisory-av26-486" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-486<br /><strong>Date:</strong> May 20, 2026</p>

<p>On May 19, 2026, Google published a security advisory to address vulnerabilities in the following product:</p>

<ul><li>Stable Channel Chrome for Desktop – versions prior to 148.0.7778.178/179 (Windows/Mac) and 148.0.7778.178 (Linux)</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates, when available.</p>

<ul class="list-unstyled"><li><a href="https://chromereleases.googleblog.com/2026/05/stable-channel-update-for-desktop_0841193308.html">Google Chrome Security Advisory</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/f5-security-advisory-av26-485</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/f5-security-advisory-av26-485"/><title><![CDATA[F5 security advisory (AV26-485)]]></title><updated>2026-05-20T15:19:32Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7718" about="/en/alerts-advisories/f5-security-advisory-av26-485" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-485<br /><strong>Date: </strong>May 20, 2026</p>

<p>On May 19, 2026, F5 published a security advisory to address a critical vulnerability in the following product:</p>

<ul><li>NGINX JavaScript (njs) – versions 0.9.4 to 0.9.8</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://my.f5.com/manage/s/article/K000161307">K000161307: NGINX ngx_http_js_module vulnerability CVE-2026-8711</a></li>
	<li><a href="https://my.f5.com/manage/s/new-updated-articles#f-f5_document_type=Security%20Advisory">MyF5</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/freepbx-security-advisory-av26-484</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/freepbx-security-advisory-av26-484"/><title><![CDATA[FreePBX security advisory (AV26-484)]]></title><updated>2026-05-20T15:10:43Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7717" about="/en/alerts-advisories/freepbx-security-advisory-av26-484" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-484<br /><strong>Date: </strong>May 20, 2026</p>

<p>On May 19, 2026, FreePBX published security advisories to address vulnerabilities in the following products:</p>

<ul><li>FreePBX Security-Reporting cdr (FreePBX 16) – versions 16.0.50 and prior</li>
	<li>FreePBX Security-Reporting cdr (FreePBX 17) – versions 17.0.11 and prior</li>
	<li>FreePBX Security-Reporting dashboard (FreePBX 16) – versions 16.0.22 and prior</li>
	<li>FreePBX Security-Reporting dashboard (FreePBX 17) – versions 17.0.5 and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the web links provided, apply the necessary updates and perform the suggested mitigations.</p>

<ul class="list-unstyled"><li><a href="https://github.com/FreePBX/security-reporting/security/advisories/GHSA-p9fq-fmpw-2h9x">Authenticated SQL Injection via ORDER BY in CDR Reports</a></li>
	<li><a href="https://github.com/FreePBX/security-reporting/security/advisories/GHSA-hw7v-v2jp-wc4v">Authenticated Local File Inclusion in Dashboard Module</a></li>
	<li><a href="https://github.com/FreePBX/security-reporting/security/advisories?state=published">FreePBX Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/atlassian-security-advisory-av26-483</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/atlassian-security-advisory-av26-483"/><title><![CDATA[Atlassian security advisory (AV26-483)]]></title><updated>2026-05-19T20:31:52Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7716" about="/en/alerts-advisories/atlassian-security-advisory-av26-483" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number:</strong> AV26-483<br /><strong>Date:</strong> May 19, 2026</p>

<p>On May 19, 2026, Atlassian published a security advisory to address vulnerabilities, including some critical ones, in the following products:</p>

<ul><li>Bamboo Data Center and Server - multiple versions</li>
	<li>Bitbucket Data Center and Server - multiple versions</li>
	<li>Confluence Data Center and Server - multiple versions</li>
	<li>Fisheye/Crucible - versions 4.9.0 to 4.9.9</li>
	<li>Jira Data Center and Server - multiple versions</li>
	<li>Jira Service Management Data Center and Server - multiple versions</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://confluence.atlassian.com/security/security-bulletin-may-19-2026-1786839142.html">Security Bulletin - May 19 2026</a></li>
	<li><a href="https://www.atlassian.com/trust/security/advisories">Atlassian Security Advisories and Bulletins</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/ubuntu-security-advisory-av26-482</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/ubuntu-security-advisory-av26-482"/><title><![CDATA[Ubuntu security advisory (AV26-482)]]></title><updated>2026-05-19T20:17:38Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7715" about="/en/alerts-advisories/ubuntu-security-advisory-av26-482" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-482<br /><strong>Date:</strong> May 19, 2026</p>

<p>Between May 11 and 17, 2026, Ubuntu published security notices to address vulnerabilities in the Linux kernel affecting the following products:</p>

<ul><li>Ubuntu 16.04 LTS</li>
	<li>Ubuntu 18.04 LTS</li>
	<li>Ubuntu 20.04 LTS</li>
	<li>Ubuntu 22.04 LTS</li>
	<li>Ubuntu 24.04 LTS</li>
</ul><p>The Cyber Centre encourages users and administrators to review the web links provided and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://ubuntu.com/security/notices/USN-8257-1">USN-8257-1: Linux kernel (Raspberry Pi) vulnerabilities (25.01)</a></li>
	<li><a href="https://ubuntu.com/security/notices/USN-8255-1">USN-8255-1: Linux kernel vulnerabilities (22.04, 20.04)</a></li>
	<li><a href="https://ubuntu.com/security/notices/USN-8258-1">USN-8258-1: Linux kernel (Azure) vulnerabilities</a></li>
	<li><a href="https://ubuntu.com/security/notices">Ubuntu Security Notices</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/red-hat-security-advisory-av26-481</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/red-hat-security-advisory-av26-481"/><title><![CDATA[Red Hat security advisory (AV26-481)]]></title><updated>2026-05-19T20:05:57Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7714" about="/en/alerts-advisories/red-hat-security-advisory-av26-481" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-481<br /><strong>Date: </strong>May 19, 2026</p>

<p>Between May 11 and 17, 2026, Red Hat published security advisories to address vulnerabilities in multiple products. Included were updates to address vulnerabilities in the Linux kernel for the following products:</p>

<ul><li>Red Hat CodeReady Linux Builder - multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux - multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux Server - multiple versions and platforms</li>
	<li>Red Hat Enterprise Linux for Real Time - multiple versions and platforms</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://access.redhat.com/security/security-updates/security-advisories">Red Hat Security Advisories</a></li>
</ul><!--CUT & PASTE the French version info --></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/dell-security-advisory-av26-480</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/dell-security-advisory-av26-480"/><title><![CDATA[Dell security advisory (AV26-480)]]></title><updated>2026-05-19T19:48:07Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7713" about="/en/alerts-advisories/dell-security-advisory-av26-480" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-480<br /><strong>Date:</strong> May 19, 2026</p>

<p>Between May 11 and 17, 2026, Dell published security advisories to address vulnerabilities in multiple products:</p>

<ul><li>Dell Enterprise Sonic Distribution - versions prior to 4.5.3</li>
	<li>Dell Live Optics Collector) - versions prior to 27.1.10.1</li>
	<li>Intel 800 Series Ethernet Adapters - versions prior to 30.5.0.13</li>
	<li>Dell PowerEdge with AMD Graphics - multiple models and versions</li>
	<li>PowerScale InsightIQ - versions 5.0.0 to 6.2.0</li>
</ul><p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.dell.com/support/security/en-ca">Dell Security advisories and notices</a></li>
</ul><!--CUT & PASTE the French version info --></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-479</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-479"/><title><![CDATA[IBM security advisory (AV26-479)]]></title><updated>2026-05-19T19:34:39Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7712" about="/en/alerts-advisories/ibm-security-advisory-av26-479" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-479<br /><strong>Date: </strong>May 19, 2026</p>

<p>Between May 11 and 17, 2026, IBM published security advisories to address vulnerabilities in multiple products. Included were critical updates for the following:</p>

<ul><li>IBM Robotic Process Automation for Cloud Pak - versions 23.0.0 to 23.0.20.5</li>
	<li>IBM Robotic Process Automation for Cloud Pak - versions 30.0.0 to 30.0.1</li>
	<li>IBM Operator for Apache Flink - versions 1.0.0 to 1.5.1</li>
	<li>IBM App Connect Enterprise - versions 13.0.1.0 to 13.0.7.1</li>
	<li>IBM App Connect Enterprise - versions 12.0.1.0 to 12.0.12.25</li>
	<li>ICP Discovery - versions 5.0.0 to 5.3.1</li>
	<li>IBM Operational Decision Manager - multiple versions</li>
	<li>IBM Cloudera Data Platform Private Could Base - versions 7.1.9, 7.3.1 and 7.3.2</li>
	<li>IBM Data Virtualization on Cloud Pak for Data - multiple versions</li>
	<li>IBM Fusion - versions 2.9.0 to 2.12.1</li>
	<li>IBM Fusion HCI - versions 2.10.0 to 2.12.1</li>
	<li>Content-Aware Storage - versions 1.1.2 to 1.1.3</li>
	<li>IBM Engineering AI Hub - versions 1.0.0 and 1.1.0</li>
	<li>IBM Integration Bus for z/OS - versions 10.1.0.0 to 10.1.0.7</li>
	<li>IBM MQ Operator - multiple versions and models</li>
	<li>IBM supplied MQ Advanced container images - multiple versions and models</li>
	<li>IBM Open SDK for Rust on AIX - versions 1.90.0.0, 1.90.0.1, 1.92.0.0 and 1.92.0.1</li>
	<li>IBM Watson Knowledge Catalog on prem - versions 5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.1.0, 5.1.1, 5.1.2 and 5.1.3</li>
	<li>IBM Watson Query on Cloud Pak for Data - version 2.2</li>
	<li>IBM Big SQL on Cloud Pak for data - multiple versions</li>
	<li>Platform Navigator in IBM Cloud Pak for Integration (CP4I) - multiple versions</li>
	<li>Automation Assets in IBM Cloud Pak for Integration (CP4I) - multiple versions</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.ibm.com/support/pages/bulletin/">IBM Product Security Incident Response</a></li>
</ul><!--CUT & PASTE the French version info --></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/mozilla-security-advisory-av26-478</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/mozilla-security-advisory-av26-478"/><title><![CDATA[Mozilla security advisory (AV26-478)]]></title><updated>2026-05-19T19:15:25Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7711" about="/en/alerts-advisories/mozilla-security-advisory-av26-478" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-478<br /><strong>Date: </strong>May 19, 2026</p>

<p>On May 19, 2026, Mozilla published security advisories to address vulnerabilities in the following products:</p>

<ul><li><span lang="en" xml:lang="en" xml:lang="en">Firefox</span> - versions prior to 151</li>
	<li><span lang="en" xml:lang="en" xml:lang="en">Firefox</span> ESR - versions prior to 115.36</li>
	<li><span lang="en" xml:lang="en" xml:lang="en">Firefox</span> ESR - versions prior to 140.11</li>
</ul><p class="mrgn-bttm-md">The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-48/">Mozilla Foundation Security Advisory 2026-46</a></li>
	<li><a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-47/">Mozilla Foundation Security Advisory 2026-47</a></li>
	<li><a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-48/">Mozilla Foundation Security Advisory 2026-48</a></li>
	<li><a href="https://www.mozilla.org/en-US/security/advisories/">Mozilla Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-477</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-477"/><title><![CDATA[HPE security advisory (AV26-477)]]></title><updated>2026-05-19T16:15:28Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7710" about="/en/alerts-advisories/hpe-security-advisory-av26-477" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number:</strong> AV26-477<br /><strong>Date:</strong> May 19, 2026</p>

<p>HPE security advisory (AV26-477) On May 18, 2026, HPE published a security advisory to address a critical vulnerability in the following product:</p>

<ul><li>HPE Unified OSS Console (UOC) – version 3.1.20 and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05056en_us&amp;docLocale=en_US">HPESBNW05056 rev.1 - HPE Unified OSS Console Assurance Monitoring (UOCAM), Multiple Vulnerabilities</a></li>
	<li><a href="https://support.hpe.com/connect/s/securitybulletinlibrary?language=en_US">HPE Security Bulletin Library</a></li>
</ul><!--CUT & PASTE the French version info --></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/microsoft-edge-security-advisory-av26-476</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/microsoft-edge-security-advisory-av26-476"/><title><![CDATA[Microsoft Edge security advisory (AV26-476)]]></title><updated>2026-05-19T15:37:28Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7709" about="/en/alerts-advisories/microsoft-edge-security-advisory-av26-476" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number:</strong> AV26-476<br /><strong>Date:</strong> May 19, 2026</p>

<p>On May 15, 2026, Microsoft published a security update to address vulnerabilities in the following product:</p>

<ul><li>Microsoft Edge Stable Channel - versions prior to 148.0.3967.70</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary update.</p>

<ul class="list-unstyled"><li><a href="https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#may-15-2026">Microsoft Edge Stable Channel Release Notes</a></li>
</ul><!--CUT & PASTE the French version info --></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-475</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-475"/><title><![CDATA[[Control systems] CISA ICS security advisories (AV26–475)]]></title><updated>2026-05-19T14:52:09Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7708" about="/en/alerts-advisories/control-systems-cisa-ics-security-advisories-av26-475" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number:</strong> AV26-475<br /><strong>Date:</strong> May 19, 2026</p>

<p>Between May 11 and 17, 2026, CISA published ICS advisories to address vulnerabilities in the following products:</p>

<ul><li>ABB AC500 V3 - firmware version PM5xxx 3.9.0 and 3.9.0_HF1</li>
	<li>ABB AC500 V3 - versions prior to 3.9.0</li>
	<li>ABB Automation Builder Gateway - versions prior to 2.9.0</li>
	<li>ABB WebPro SNMP Card PowerValue - versions prior to 1.1.8.k and 1.1.8.p</li>
	<li>Fuji Electric Tellus - version 5.0.2</li>
	<li>Siemens Industrial Devices - multiple models and versions</li>
	<li>Siemens Opcenter RDnL - all versions</li>
	<li>Siemens Ruggedcom Rox MX/RX models - versions prior to 2.17.1</li>
	<li>Siemens SENTRON 7KT PAC1261 Data Manager - versions prior to 2.1.0</li>
	<li>Siemens SIMATIC CN 4100 - versions prior to 5.0</li>
	<li>Siemens SIMATIC S7 PLC Web Server - multiple versions and models</li>
	<li>Siemens SIMATIC - multiple versions and models</li>
	<li>Siemens SIPROTEC 5 - multiple versions and models</li>
	<li>Siemens Siemens ROS# - versions prior to 2.2.2</li>
	<li>Siemens Simcenter Femap - versions prior to 2512.0003</li>
	<li>Siemens Solid Edge - versions prior to 226.0.5</li>
	<li>Siemens Teamcenter - multiple versions and models</li>
	<li>Siemens gWAP - versions prior to 3.1.1</li>
	<li>Subnet Solutions PowerSYSTEM Center - multiple versions and models</li>
	<li>Universal Robots Polyscope 5 - versions prior to 5.25.1</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web link, perform the suggested mitigations and apply the necessary updates if available.</p>

<ul class="list-unstyled"><li><a href="https://www.cisa.gov/news-events/cybersecurity-advisories">CISA ICS Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/freepbx-security-advisory-av26-474</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/freepbx-security-advisory-av26-474"/><title><![CDATA[FreePBX security advisory (AV26–474)]]></title><updated>2026-05-15T19:15:37Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7707" about="/en/alerts-advisories/freepbx-security-advisory-av26-474" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26–474<br /><strong>Date: </strong>May 15, 2026</p>

<p>On May 15, 2026, FreePBX published a security advisory to address a critical vulnerability in the following products:</p>

<ul><li>FreePBX Security-Reporting userman (FreePBX 16) – versions 16.0.45 and prior</li>
	<li>FreePBX Security-Reporting userman (FreePBX 17) – versions 17.0.7 and prior</li>
</ul><p>The Cyber Centre encourages users and administrators to review the web links provided, apply the necessary updates and perform the suggested mitigations.</p>

<ul class="list-unstyled"><li><a href="https://github.com/FreePBX/security-reporting/security/advisories/GHSA-m55x-h47x-v3gx">Unauthenticated Use of Hard-Coded Credentials Vulnerability in Free PBX UCP Interface</a></li>
	<li><a href="https://github.com/FreePBX/security-reporting/security/advisories?state=published">FreePBX Security Advisories </a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-av26-473</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/microsoft-security-advisory-av26-473"/><title><![CDATA[Microsoft security advisory (AV26-473) – Update 1]]></title><updated>2026-05-15T17:42:44Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7706" about="/en/alerts-advisories/microsoft-security-advisory-av26-473" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-473<br /><strong>Date:</strong> May 15, 2026<strong> </strong></p>

<p>On May 14, 2026, Microsoft published a security advisory to address a critical vulnerability in the following products:</p>

<ul><li>Microsoft Exchange Server 2016 on premises versions (any update level)</li>
	<li>Microsoft Exchange Server 2019 on premises versions (any update level)</li>
	<li>Exchange Server Subscription Edition (SE) on premises versions (any update level)</li>
</ul><p>Microsoft is aware of limited exploitation of CVE-2026-42897.</p>

<h2 class="h3">Update 1</h2>

<p>On May 15, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-42897 to their Known Exploited Vulnerabilities (KEV) Database.</p>

<p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates, when available.</p>

<ul class="list-unstyled"><li><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42897">Microsoft Exchange Server Spoofing Vulnerability CVE-2026-42897 Security Vulnerability</a></li>
	<li><a href="https://learn.microsoft.com/en-us/exchange/plan-and-deploy/post-installation-tasks/security-best-practices/exchange-emergency-mitigation-service">Exchange Emergency Mitigation (EM) service</a></li>
	<li><a href="https://techcommunity.microsoft.com/blog/exchange/addressing-exchange-server-may-2026-vulnerability-cve-2026-42897/4518498">Exchange Team Blog - Addressing Exchange Server May 2026 vulnerability CVE-2026-42897</a></li>
	<li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-42897">CISA KEV: CVE-2026-42897</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/al26-012-critical-vulnerability-affecting-cisco-catalyst-sd-wan-cve-2026-20182</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/al26-012-critical-vulnerability-affecting-cisco-catalyst-sd-wan-cve-2026-20182"/><title><![CDATA[AL26-012 - Critical vulnerability affecting Cisco Catalyst SD-WAN - CVE-2026-20182]]></title><updated>2026-05-15T13:03:19Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7705" about="/en/alerts-advisories/al26-012-critical-vulnerability-affecting-cisco-catalyst-sd-wan-cve-2026-20182" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Number:</strong> AL26-012<br /><strong>Date:</strong> May 15, 2026</p>

<h2>Audience</h2>

<p>This Alert is intended for <abbr title="information technology">IT</abbr> professionals and managers.</p>

<h2>Purpose</h2>

<p>An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security ("Cyber Centre") is also available to provide additional assistance regarding the content of this Alert to recipients as requested.</p>

<h2>Details</h2>

<p>The Canadian Centre for Cyber Security (Cyber Centre) is aware of active exploitation<sup id="fn1-rf"><a class="fn-lnk" href="#fn1">1</a></sup><sup id="fn2-rf"><a class="fn-lnk" href="#fn2"><span class="wb-inv">Footnote </span>2</a></sup> of Cisco Catalyst Software-Defined Wide Area Network (SD-WAN) devices <sup id="fn3-rf"><a class="fn-lnk" href="#fn3"><span class="wb-inv">Footnote </span>3</a></sup>. In response to the Cisco security advisory released on May 14, 2026<sup id="fn4-rf"><a class="fn-lnk" href="#fn4"><span class="wb-inv">Footnote </span>4</a></sup>, the Cyber Centre issued AV26-471<sup id="fn5-rf"><a class="fn-lnk" href="#fn5"><span class="wb-inv">Footnote </span>5</a></sup> on May 14, 2026.</p>

<p>Tracked as CVE-2026-20182 <sup id="fn6-rf"><a class="fn-lnk" href="#fn6"><span class="wb-inv">Footnote </span>6</a></sup>, this vulnerability is a critical Improper authentication vulnerability (CWE-287)<sup id="fn7-rf"><a class="fn-lnk" href="#fn7"><span class="wb-inv">Footnote </span>7</a></sup> affecting the peering authentication process of Cisco Catalyst SD-WAN Controller (formerly SD-WAN vSmart) and Cisco Catalyst SD-WAN Manager (formerly SD-WAN vManage). It could allow an unauthenticated, remote attacker to bypass authentication, elevate privileges, and obtain administrative privileges on affected systems.</p>

<p>Cisco Catalyst SD-WAN Controller systems accessible from the internet, particularly those with exposed network ports, are at risk of exposure to compromise.</p>

<p>This vulnerability affects Cisco Catalyst SD-WAN Controller and Cisco Catalyst SD-WAN Manager, regardless of device configuration. The vulnerability affects all deployment types, including:</p>

<ul><li>On-Prem Deployment</li>
	<li>Cisco SD-WAN Cloud-Pro</li>
	<li>Cisco SD-WAN Cloud - Cisco Managed</li>
	<li>Cisco SD-WAN for Government - FedRAMP Environment</li>
</ul><p>The Cyber Centre is aware of incidents involving CVE-2026-20182; with reported attempts of SSH keys being added, NETCONF configurations being modified and escalation to root privileges. This allowed multiple follow-up actions including administrative access, persistence and long-term access to SD-WAN networks.</p>

<p>Cisco has also noted the continued exploitation of Cisco Catalyst SD-WAN vulnerabilities CVE-2026-20133, CVE-2026-20128 and CVE-2026-20122 previously reported in February 2026 <sup id="fn8-rf"><a class="fn-lnk" href="#fn8"><span class="wb-inv">Footnote </span>8</a></sup>. The Cyber Centre released AL26-004 <sup id="fn9-rf"><a class="fn-lnk" href="#fn9"><span class="wb-inv">Footnote </span>9</a></sup> at that time highlighting the issue.</p>

<h2>Suggested actions</h2>

<p>The Cyber Centre recommends that organizations upgrade affected Cisco Catalyst SD-WAN instances to a fixed version:</p>

<div class="table-responsive">
<table class="table"><thead><tr><th scope="col">Affected product</th>
			<th scope="col">Affected version</th>
			<th scope="col">Solution</th>
		</tr></thead><tbody><tr><td>Cisco Catalyst SD-WAN</td>
			<td>Earlier than 20.9<sup id="fn*-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>Migrate to a fixed release.</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.9</td>
			<td>20.9.9.1</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.10</td>
			<td>20.12.7.1</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.11<sup id="fn*a-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>20.12.7.1</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.12</td>
			<td>20.12.5.4<br />
			20.12.6.2<br />
			20.12.7.1</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.13<sup id="fn*b-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>20.15.5.2</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.14<sup id="fn*c-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>20.15.5.2</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.15</td>
			<td>20.15.4.4<br />
			20.15.5.2</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.16<sup id="fn*d-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>20.18.2.2</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>20.18<sup id="fn*e-rf"><a class="fn-lnk" href="#fn*">*</a></sup></td>
			<td>20.18.2.2</td>
		</tr><tr><td>Cisco Catalyst SD-WAN</td>
			<td>26.1</td>
			<td>26.1.1.1</td>
		</tr></tbody><thead></thead></table></div>

<p>Cisco has also addressed this vulnerability in Cisco SD-WAN Cloud (Cisco Managed) Release 20.15.506, which is cloud based. No user action is required. Customers can determine the current remediation status or software version by using the Help function in the service GUI<sup id="fn4a-rf"><a class="fn-lnk" href="#fn4"><span class="wb-inv">Footnote </span>4</a></sup>.</p>

<p>The Cyber Centre also recommends organizations to:</p>

<ul><li>Review the Cisco advisory<sup id="fn4b-rf"><a class="fn-lnk" href="#fn4"><span class="wb-inv">Footnote </span>4</a></sup> and the Talos Intelligence article<sup id="fn1a-rf"><a class="fn-lnk" href="#fn1"><span class="wb-inv">Footnote </span>1</a></sup> to identify if indicators of compromise are present on their devices.</li>
	<li>Cisco states to preserve possible indicators of compromise, customers should issue the <strong>request admin-tech</strong> command from each of the control components in the SD-WAN deployment before upgrading<sup id="fn4c-rf"><a class="fn-lnk" href="#fn4"><span class="wb-inv">Footnote </span>4</a></sup><sup id="fn10-rf"><a class="fn-lnk" href="#fn10"><span class="wb-inv">Footnote </span>10</a></sup>.</li>
	<li>Collect artifacts, including virtual snapshots and logs from SD-WAN technology.</li>
	<li>Fully patch SD-WAN technology including those that are affected by CVE-2026-20182.</li>
	<li>Implement recommendations from the Cisco SD-WAN hardening guide<sup id="fn11-rf"><a class="fn-lnk" href="#fn11"><span class="wb-inv">Footnote </span>11</a></sup>.</li>
</ul><p>In addition, the Cyber Centre strongly recommends that organizations review and implement the Cyber Centre’s Top 10 IT Security Actions with an emphasis on the following topics<sup id="fn12-rf"><a class="fn-lnk" href="#fn12"><span class="wb-inv">Footnote </span>12</a></sup>.</p>

<ul><li>Consolidating, monitoring, and defending Internet gateways</li>
	<li>Patch operating systems and applications</li>
	<li>Harden operating systems and applications</li>
	<li>Isolate web-facing applications</li>
</ul><p>Should activity matching the content of this alert be discovered, recipients are encouraged to report via <a href="/en/incident-management">My Cyber Portal</a> or email <a href="mailto:contact@cyber.gc.ca">contact@cyber.gc.ca</a>.</p>

<h2>References</h2>

<aside class="wb-fnote" role="note"><dl><dt id="fn*-dt">*</dt>
	<dd id="fn*" tabindex="-1">
	<p>These releases have reached End of Software Maintenance.</p>

	<p class="fn-rtn"><a data-wb-fnote="true" href="#fn*b-rf"><span class="wb-inv">Return to footnote</span>*<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 1</dt>
	<dd id="fn1">
	<p><a href="https://blog.talosintelligence.com/sd-wan-ongoing-exploitation/">Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities</a></p>

	<p class="fn-rtn"><a href="#fn1-rf"><span class="wb-inv">Return to footnote</span>1<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 2</dt>
	<dd id="fn2">
	<p><a href="https://www.rapid7.com/blog/post/ve-cve-2026-20182-critical-authentication-bypass-cisco-catalyst-sd-wan-controller-fixed/">Rapid7 CVE-2026-20182: Critical authentication bypass in Cisco Catalyst SD-WAN Controller (FIXED)</a></p>

	<p class="fn-rtn"><a href="#fn2-rf"><span class="wb-inv">Return to footnote</span>2<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 3</dt>
	<dd id="fn3">
	<p><a href="https://www.cisco.com/site/us/en/learn/topics/networking/what-is-sd-wan.html">What is SD-WAN? Software-Defined WAN (SDWAN)</a></p>

	<p class="fn-rtn"><a href="#fn3-rf"><span class="wb-inv">Return to footnote</span>3<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 4</dt>
	<dd id="fn4">
	<p><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW">Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability</a></p>

	<p class="fn-rtn"><a href="#fn4-rf"><span class="wb-inv">Return to footnote</span>4<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 5</dt>
	<dd id="fn5">
	<p><a href="/en/alerts-advisories/cisco-security-advisory-av26-471">Cisco security advisory (AV26-471)</a></p>

	<p class="fn-rtn"><a href="#fn5-rf"><span class="wb-inv">Return to footnote</span>5<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 6</dt>
	<dd id="fn6">
	<p><a href="https://www.cve.org/CVERecord?id=CVE-2026-20182">cve.org - CVE-2026-20182</a></p>

	<p class="fn-rtn"><a href="#fn6-rf"><span class="wb-inv">Return to footnote</span>6<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 7</dt>
	<dd id="fn7">
	<p><a href="https://cwe.mitre.org/data/definitions/287.html">CWE-287: Improper Authentication</a></p>

	<p class="fn-rtn"><a href="#fn7-rf"><span class="wb-inv">Return to footnote</span>7<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 8</dt>
	<dd id="fn8">
	<p><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-authbp-qwCX8D4v">Cisco Catalyst SD-WAN Vulnerabilities</a></p>

	<p class="fn-rtn"><a href="#fn8-rf"><span class="wb-inv">Return to footnote</span>8<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 9</dt>
	<dd id="fn9">
	<p><a href="/en/alerts-advisories/al26-004-critical-vulnerability-affecting-cisco-catalyst-sd-wan-cve-2026-20127">AL26-004 - Critical vulnerability affecting Cisco Catalyst SD-WAN - CVE-2026-20127</a></p>

	<p class="fn-rtn"><a href="#fn9-rf"><span class="wb-inv">Return to footnote</span>9<span class="wb-inv"> referrer</span></a></p>
	</dd>
</dl><dl><dt>Footnote 10</dt>
	<dd id="fn10">
	<p><a href="https://www.cisco.com/c/en/us/support/docs/routers/sd-wan/225842-remediate-catalyst-sd-wan-security.html">Remediate Catalyst SD-WAN Security Advisory - May 2026</a></p>

	<p class="fn-rtn"><a href="#fn10-rf"><span class="wb-inv">Return to footnote</span>10<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 11</dt>
	<dd id="fn11">
	<p><a href="https://sec.cloudapps.cisco.com/security/center/resources/Cisco-Catalyst-SD-WAN-HardeningGuide">Cisco Catalyst SD-WAN Hardening Guide</a></p>

	<p class="fn-rtn"><a href="#fn11-rf"><span class="wb-inv">Return to footnote</span>11<span class="wb-inv"> referrer</span></a></p>
	</dd>
	<dt>Footnote 12</dt>
	<dd id="fn12">
	<p><a href="/en/guidance/top-10-it-security-actions-protect-internet-connected-networks-and-information-itsm10089">Top 10 IT security actions to protect Internet connected networks and information (ITSM.10.089)</a></p>

	<p class="fn-rtn"><a href="#fn12-rf"><span class="wb-inv">Return to footnote</span>12<span class="wb-inv"> referrer</span></a></p>
	</dd>
</dl><dl></dl></aside></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/tenable-security-advisory-av26-472</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/tenable-security-advisory-av26-472"/><title><![CDATA[  Tenable security advisory (AV26-472)]]></title><updated>2026-05-14T20:03:36Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7704" about="/en/alerts-advisories/tenable-security-advisory-av26-472" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number</strong>: AV26-472<br /><strong>Date:</strong> May 14, 2026</p>

<p>On May 14, 2026, Tenable published a security advisory to address critical vulnerabilities in the following product:</p>

<ul><li>Tenable Network Monitor – versions prior to 6.5.4</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.tenable.com/security/tns-2026-14">[R1] Tenable Network Monitor 6.5.4 Fixes Multiple Vulnerabilities</a></li>
	<li><a href="https://www.tenable.com/security">Tenable Product Security Advisories</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/cisco-security-advisory-av26-471</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/cisco-security-advisory-av26-471"/><title><![CDATA[Cisco security advisory (AV26-471)]]></title><updated>2026-05-14T18:33:33Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7703" about="/en/alerts-advisories/cisco-security-advisory-av26-471" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-471<br /><strong>Date:</strong> May 14, 2026</p>

<p>On May 14, 2026, Cisco published security advisories to address critical vulnerabilities in the following products:</p>

<ul><li>Cisco Catalyst SD-WAN Release – versions 20.9 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.10 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.11 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.12 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.13 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.14 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.15 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.16 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 20.18 and prior</li>
	<li>Cisco Catalyst SD-WAN Release – versions 26.1 and prior</li>
</ul><p>Cisco is aware of limited exploitation of CVE-2026-20182.</p>

<p>On May 14, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-20182 to their Known Exploited Vulnerabilities (KEV) Database.</p>

<p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-rpa2-v69WY2SW">Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability</a></li>
	<li><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-mltvnps2-JxpWm7R">Cisco Catalyst SD-WAN Manager Vulnerabilities</a></li>
	<li><a href="https://tools.cisco.com/security/center/publicationListing.x">Cisco Security Advisories</a></li>
	<li><a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-20182">CISA KEV: CVE-2026-20182</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry><entry><id>https://cyber.gc.ca/en/alerts-advisories/postgresql-security-advisory-av26-470</id><link rel="alternate" href="https://cyber.gc.ca/en/alerts-advisories/postgresql-security-advisory-av26-470"/><title><![CDATA[PostgreSQL security advisory (AV26-470)]]></title><updated>2026-05-14T16:00:15Z</updated><summary><![CDATA[]]></summary><content><![CDATA[<article data-history-node-id="7702" about="/en/alerts-advisories/postgresql-security-advisory-av26-470" class="cccs-threats full clearfix">

  
    

  
  <div class="content">
      <div class="layout layout--onecol">
    <div  class="layout__region layout__region--content">
      
<div data-block-plugin-id="extra_field_block:node:cccs_threats:links" class="block block-layout-builder block-extra-field-blocknodecccs-threatslinks clearfix">
  
    

      
  </div>

<div data-block-plugin-id="field_block:node:cccs_threats:body" class="block block-layout-builder block-field-blocknodecccs-threatsbody clearfix">
  
    

      
            <div class="field field--name-body field--type-text-with-summary field--label-hidden field--item"><p><strong>Serial number: </strong>AV26-470<br /><strong>Date:</strong> May 14, 2026</p>

<p>On May 14, 2026, PostgreSQL published a security advisory to address vulnerabilities in the following products:</p>

<ul><li>PostgreSQL – 14.x versions prior to 14.23</li>
	<li>PostgreSQL – 15.x versions prior to 15.18</li>
	<li>PostgreSQL – 16.x versions prior to 16.14</li>
	<li>PostgreSQL – 17.x versions prior to 17.10</li>
	<li>PostgreSQL – 18.x versions prior to 18.4</li>
</ul><p>The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates.</p>

<ul class="list-unstyled"><li><a href="https://www.postgresql.org/about/news/postgresql-184-1710-1614-1518-and-1423-released-3297/">PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 Released!</a></li>
	<li><a href="https://www.postgresql.org/support/security/">PostgreSQL Security Information</a></li>
</ul></div>
      
  </div>

    </div>
  </div>

  </div>

</article>
]]></content><author><name><![CDATA[Canadian Centre for Cyber Security]]></name></author></entry></feed>