<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>IsItPatched — Emerging (security news linked to tracked software, BETA)</title>
    <link>https://isitpatched.com/emerging</link>
    <atom:link href="https://isitpatched.com/feed/emerging.xml" rel="self" type="application/rss+xml" />
    <description>Trusted security reporting (first-party vendor advisories, research &amp; CISA) machine-linked to the software IsItPatched tracks. BETA — attributed to the source, never asserted as our own finding.</description>
    <language>en</language>
    <copyright>Compiled by IsItPatched (isitpatched.com) from NVD, CISA KEV, EPSS and endoflife.date.</copyright>
    <generator>IsItPatched (https://isitpatched.com)</generator>
    <docs>https://www.rssboard.org/rss-specification</docs>
    <ttl>15</ttl>
    <image>
      <url>https://isitpatched.com/icon-192.png</url>
      <title>IsItPatched — Emerging (security news linked to tracked software, BETA)</title>
      <link>https://isitpatched.com/emerging</link>
    </image>
    <lastBuildDate>Tue, 16 Jun 2026 22:43:51 GMT</lastBuildDate>
    <item>
      <title>Cyber Security News: Hackers Weaponize Microsoft Teams Relay to Hide Ransomware Traffic</title>
      <link>https://cybersecuritynews.com/microsoft-teams-relay-abused/</link>
      <guid isPermaLink="true">https://cybersecuritynews.com/microsoft-teams-relay-abused/</guid>
      <description>Cyber Security News reports on Microsoft Teams. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 13:59:55 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds</title>
      <link>https://thehackernews.com/2026/06/new-rokarolla-android-malware-steals.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/new-rokarolla-android-malware-steals.html</guid>
      <description>The Hacker News reports on Android. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 13:10:17 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: Rockwell Automation Logix 5370 &amp; 5570 Controllers Vulnerable To Denial of Service Via CIP</title>
      <link>https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-03</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-03</guid>
      <description>CISA Advisories reports (CVE-2026-11317). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: Rockwell Automation RSLinx</title>
      <link>https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-02</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-02</guid>
      <description>CISA Advisories reports (CVE-2020-13573). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: Rockwell Automation FLEX I/O EtherNet/IP Adapters</title>
      <link>https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-05</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-05</guid>
      <description>CISA Advisories reports (CVE-2026-0646). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: Rockwell Automation FactoryTalk Analytics PavilionX</title>
      <link>https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-01</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/ics-advisories/icsa-26-167-01</guid>
      <description>CISA Advisories reports (CVE-2025-14272). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cyber Security News: Microsoft Teams Analyze the Wi-Fi Hotspot Data Connected to an Employee’s Device</title>
      <link>https://cybersecuritynews.com/microsoft-teams-analyze-the-wi-fi-hotspot-data/</link>
      <guid isPermaLink="true">https://cybersecuritynews.com/microsoft-teams-analyze-the-wi-fi-hotspot-data/</guid>
      <description>Cyber Security News reports on Microsoft Teams. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 11:17:58 GMT</pubDate>
    </item>
    <item>
      <title>BleepingComputer: CISA warns of another cPanel plugin flaw exploited in attacks</title>
      <link>https://www.bleepingcomputer.com/news/security/cisa-warns-of-another-actively-exploited-cpanel-plugin-flaw/</link>
      <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/cisa-warns-of-another-actively-exploited-cpanel-plugin-flaw/</guid>
      <description>BleepingComputer reports on cPanel Plugin (CVE-2026-54420). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 10:47:59 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week</title>
      <link>https://thehackernews.com/2026/06/attackers-exploit-three-fortinet.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/attackers-exploit-three-fortinet.html</guid>
      <description>The Hacker News reports (CVE-2026-39813). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 10:30:41 GMT</pubDate>
    </item>
    <item>
      <title>BleepingComputer: Ransomware gang abuses Microsoft Teams relays to hide malicious traffic</title>
      <link>https://www.bleepingcomputer.com/news/security/ransomware-gang-abuses-microsoft-teams-relays-to-hide-malicious-traffic/</link>
      <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/ransomware-gang-abuses-microsoft-teams-relays-to-hide-malicious-traffic/</guid>
      <description>BleepingComputer reports on Microsoft Teams. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 10:18:48 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: CVE-2026-34182 CMS AuthEnvelopedData Processing May Accept Forged Messages</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-34182</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-34182</guid>
      <description>MSRC reports (CVE-2026-34182). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 09:14:59 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: CVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module&apos;s plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate&apos;s length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext.</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54411</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54411</guid>
      <description>MSRC reports (CVE-2026-54411). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 08:01:29 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw</title>
      <link>https://thehackernews.com/2026/06/cisco-releases-security-updates-for.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/cisco-releases-security-updates-for.html</guid>
      <description>The Hacker News reports (CVE-2026-20262). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 06:05:58 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation</title>
      <link>https://thehackernews.com/2026/06/cisa-flags-litespeed-cpanel-plugin-flaw.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/cisa-flags-litespeed-cpanel-plugin-flaw.html</guid>
      <description>The Hacker News reports on cPanel Plugin (CVE-2026-54420). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 05:41:52 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11700 Use after free in Tracing</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11701</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11701</guid>
      <description>MSRC reports (CVE-2026-11700). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:07 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11699 Use after free in Bluetooth</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11700</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11700</guid>
      <description>MSRC reports (CVE-2026-11699). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:06 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11698 Use after free in Bluetooth</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11699</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11699</guid>
      <description>MSRC reports (CVE-2026-11698). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:05 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11697 Insufficient validation of untrusted input in UI</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11698</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11698</guid>
      <description>MSRC reports (CVE-2026-11697). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:03 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11696 Uninitialized Use in Video</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11697</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11697</guid>
      <description>MSRC reports (CVE-2026-11696). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:02 GMT</pubDate>
    </item>
    <item>
      <title>MSRC: Chromium: CVE-2026-11695 Inappropriate implementation in Passwords</title>
      <link>https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11696</link>
      <guid isPermaLink="true">https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11696</guid>
      <description>MSRC reports (CVE-2026-11695). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Tue, 16 Jun 2026 02:15:01 GMT</pubDate>
    </item>
    <item>
      <title>Cisco PSIRT: Cisco Catalyst SD-WAN Manager Arbitrary File Write Vulnerability</title>
      <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Arbitrary%20File%20Write%20Vulnerability%26vs_k=1</link>
      <guid isPermaLink="true">https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-arbfw-c2rZvQ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Arbitrary%20File%20Write%20Vulnerability%26vs_k=1</guid>
      <description>Cisco PSIRT reports on Catalyst SD-WAN Manager. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 22:00:51 GMT</pubDate>
    </item>
    <item>
      <title>BleepingComputer: SimpleHelp bug lets hackers create rogue remote support accounts</title>
      <link>https://www.bleepingcomputer.com/news/security/simplehelp-bug-lets-hackers-create-rogue-remote-support-accounts/</link>
      <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/simplehelp-bug-lets-hackers-create-rogue-remote-support-accounts/</guid>
      <description>BleepingComputer reports on SimpleHelp. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 20:06:52 GMT</pubDate>
    </item>
    <item>
      <title>BleepingComputer: Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks</title>
      <link>https://www.bleepingcomputer.com/news/security/cisco-fixes-sd-wan-vmanage-flaw-exploited-in-zero-day-attacks/</link>
      <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/cisco-fixes-sd-wan-vmanage-flaw-exploited-in-zero-day-attacks/</guid>
      <description>BleepingComputer reports (CVE-2026-20262). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 17:12:42 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers</title>
      <link>https://thehackernews.com/2026/06/litellm-vulnerability-chain-lets-low.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/litellm-vulnerability-chain-lets-low.html</guid>
      <description>The Hacker News reports on LiteLLM. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 16:39:01 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: One-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA Codes</title>
      <link>https://thehackernews.com/2026/06/one-click-microsoft-365-copilot-flaw.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/one-click-microsoft-365-copilot-flaw.html</guid>
      <description>The Hacker News reports on Microsoft 365 Copilot. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 15:09:05 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: ⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and More</title>
      <link>https://thehackernews.com/2026/06/weekly-recap-chrome-0-day-unifi.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/weekly-recap-chrome-0-day-unifi.html</guid>
      <description>The Hacker News reports on macOS. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 13:49:29 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: CISA Adds Two Known Exploited Vulnerabilities to Catalog</title>
      <link>https://www.cisa.gov/news-events/alerts/2026/06/15/cisa-adds-two-known-exploited-vulnerabilities-catalog</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/alerts/2026/06/15/cisa-adds-two-known-exploited-vulnerabilities-catalog</guid>
      <description>CISA Advisories reports (CVE-2026-20262). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Palo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN Flaw</title>
      <link>https://thehackernews.com/2026/06/palo-alto-warns-of-active-exploitation.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/palo-alto-warns-of-active-exploitation.html</guid>
      <description>The Hacker News reports on Palo Alto PAN-OS (CVE-2026-0257). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Mon, 15 Jun 2026 06:17:32 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication</title>
      <link>https://thehackernews.com/2026/06/critical-splunk-enterprise-flaw-lets.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/critical-splunk-enterprise-flaw-lets.html</guid>
      <description>The Hacker News reports on Splunk Enterprise (CVE-2026-20253). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Sat, 13 Jun 2026 13:23:03 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0249 GlobalProtect App: Certificate Validation Bypass Vulnerabilities (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0249</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0249</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0249). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Sat, 13 Jun 2026 01:45:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0250 GlobalProtect App: Buffer Overflow Vulnerability during connection to Portal or Gateway (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0250</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0250</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0250). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Sat, 13 Jun 2026 01:30:00 GMT</pubDate>
    </item>
    <item>
      <title>Cisco PSIRT: Cisco Catalyst SD-WAN Controller, Catalyst SD-WAN Manager, and Catalyst SD-WAN Validator Authenticated Privilege Escalation Vulnerability</title>
      <link>https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-privesc-4uxFrdzx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Controller,%20Catalyst%20SD-WAN%20Manager,%20and%20Catalyst%20SD-WAN%20Validator%20Authenticated%20Privilege%20Escalation%20Vulnerability%26vs_k=1</link>
      <guid isPermaLink="true">https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-privesc-4uxFrdzx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Controller,%20Catalyst%20SD-WAN%20Manager,%20and%20Catalyst%20SD-WAN%20Validator%20Authenticated%20Privilege%20Escalation%20Vulnerability%26vs_k=1</guid>
      <description>Cisco PSIRT reports on Catalyst SD-WAN Manager. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 20:36:49 GMT</pubDate>
    </item>
    <item>
      <title>Rapid7: Active Exploitation of Oracle PeopleSoft Zero-Day (CVE-2026-35273)</title>
      <link>https://www.rapid7.com/blog/post/etr-active-exploitation-of-oracle-peoplesoft-zero-day-cve-2026-35273</link>
      <guid isPermaLink="true">https://www.rapid7.com/blog/post/etr-active-exploitation-of-oracle-peoplesoft-zero-day-cve-2026-35273</guid>
      <description>Rapid7 reports (CVE-2026-35273). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 13:43:04 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: CISA Adds One Known Exploited Vulnerability to Catalog</title>
      <link>https://www.cisa.gov/news-events/alerts/2026/06/12/cisa-adds-one-known-exploited-vulnerability-catalog</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/alerts/2026/06/12/cisa-adds-one-known-exploited-vulnerability-catalog</guid>
      <description>CISA Advisories reports (CVE-2026-35273). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Fri, 12 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities</title>
      <link>https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/shinyhunters-exploits-oracle-peoplesoft.html</guid>
      <description>The Hacker News reports (CVE-2026-35273). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 20:29:23 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets</title>
      <link>https://thehackernews.com/2026/06/new-attacks-trick-openclaw-ai-agent.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/new-attacks-trick-openclaw-ai-agent.html</guid>
      <description>The Hacker News reports on OpenClaw. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 17:46:32 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New Stories</title>
      <link>https://thehackernews.com/2026/06/threatsday-bulletin-worm-code-leaked-ai.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/threatsday-bulletin-worm-code-leaked-ai.html</guid>
      <description>The Hacker News reports on Claude Code. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Patch available</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 13:20:41 GMT</pubDate>
    </item>
    <item>
      <title>CISA Advisories: Yarbo Android/iOS Mobile Application and Cloud Infrastructure</title>
      <link>https://www.cisa.gov/news-events/ics-advisories/icsa-26-162-01</link>
      <guid isPermaLink="true">https://www.cisa.gov/news-events/ics-advisories/icsa-26-162-01</guid>
      <description>CISA Advisories reports on Android. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 12:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Trend Micro ZDI: ZDI-26-360: MATE Desktop Atril Document Viewer EPUB File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability</title>
      <link>http://www.zerodayinitiative.com/advisories/ZDI-26-360/</link>
      <guid isPermaLink="true">http://www.zerodayinitiative.com/advisories/ZDI-26-360/</guid>
      <description>Trend Micro ZDI reports (CVE-2026-52849). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 05:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Trend Micro ZDI: ZDI-26-359: Samsung rlottie Numeric Truncation Remote Code Execution Vulnerability</title>
      <link>http://www.zerodayinitiative.com/advisories/ZDI-26-359/</link>
      <guid isPermaLink="true">http://www.zerodayinitiative.com/advisories/ZDI-26-359/</guid>
      <description>Trend Micro ZDI reports (CVE-2026-8916). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 05:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Trend Micro ZDI: ZDI-26-358: Allegra downloadAttachment Cross-Site Scripting Authentication Bypass Vulnerability</title>
      <link>http://www.zerodayinitiative.com/advisories/ZDI-26-358/</link>
      <guid isPermaLink="true">http://www.zerodayinitiative.com/advisories/ZDI-26-358/</guid>
      <description>Trend Micro ZDI reports (CVE-2026-11443). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 05:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Trend Micro ZDI: ZDI-26-357: Allegra exportReport Directory Traversal Information Disclosure Vulnerability</title>
      <link>http://www.zerodayinitiative.com/advisories/ZDI-26-357/</link>
      <guid isPermaLink="true">http://www.zerodayinitiative.com/advisories/ZDI-26-357/</guid>
      <description>Trend Micro ZDI reports (CVE-2026-11442). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 05:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Trend Micro ZDI: ZDI-26-356: Apache HTTP Server mod_proxy_ajp Out-Of-Bounds Read Information Disclosure Vulnerability</title>
      <link>http://www.zerodayinitiative.com/advisories/ZDI-26-356/</link>
      <guid isPermaLink="true">http://www.zerodayinitiative.com/advisories/ZDI-26-356/</guid>
      <description>Trend Micro ZDI reports on Apache HTTP Server (CVE-2026-34032). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 05:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0273 PAN-OS: Authenticated Admin Command Injection Vulnerability via CLI or Web UI (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0273</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0273</guid>
      <description>Palo Alto PSIRT reports on Palo Alto PAN-OS (CVE-2026-0273). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Thu, 11 Jun 2026 01:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Dark Reading: Bug Bounty Research Triggers ServiceNow Security Alert</title>
      <link>https://www.darkreading.com/vulnerabilities-threats/bug-bounty-research-triggers-servicenow-security-alert</link>
      <guid isPermaLink="true">https://www.darkreading.com/vulnerabilities-threats/bug-bounty-research-triggers-servicenow-security-alert</guid>
      <description>Dark Reading reports on ServiceNow. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 20:07:53 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0270 Cortex XSOAR: Path Traversal Vulnerability (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0270</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0270</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0270). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0272 PAN-OS: Privilege Escalation (PE) Vulnerability in the Command Line Interface (CLI) (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0272</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0272</guid>
      <description>Palo Alto PSIRT reports on Palo Alto PAN-OS (CVE-2026-0272). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0268 Prisma Access Agent: Local Authenticated VPN Enforcement Bypass on Linux (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0268</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0268</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0268). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0274 Cortex XSOAR: Improper Validation of Credentials in CommvaultSecurityIQ integration (Severity: HIGH)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0274</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0274</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0274). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0267 GlobalProtect App: Information Exposure Vulnerability on macOS (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0267</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0267</guid>
      <description>Palo Alto PSIRT reports on macOS (CVE-2026-0267). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0271 Prisma Access Agent: Local Privilege Escalation by Authorized Users (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0271</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0271</guid>
      <description>Palo Alto PSIRT reports (CVE-2026-0271). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0269 PAN-OS: Denial of Service (DoS) in Tunnel Traffic Processing (Severity: MEDIUM)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0269</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0269</guid>
      <description>Palo Alto PSIRT reports on Palo Alto PAN-OS (CVE-2026-0269). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Palo Alto PSIRT: CVE-2026-0266 PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Web Interface (Severity: LOW)</title>
      <link>https://security.paloaltonetworks.com/CVE-2026-0266</link>
      <guid isPermaLink="true">https://security.paloaltonetworks.com/CVE-2026-0266</guid>
      <description>Palo Alto PSIRT reports on Palo Alto PAN-OS (CVE-2026-0266). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 16:00:00 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Ivanti, Fortinet, and SAP Release Patches for Multiple Critical Vulnerabilities</title>
      <link>https://thehackernews.com/2026/06/ivanti-fortinet-and-sap-release-patches.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/ivanti-fortinet-and-sap-release-patches.html</guid>
      <description>The Hacker News reports (CVE-2026-25089). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Patch available</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 15:10:59 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Langflow Vulnerability CVE-2026-5027 Exploited for Unauthenticated RCE</title>
      <link>https://thehackernews.com/2026/06/unpatched-langflow-flaw-cve-2026-5027.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/unpatched-langflow-flaw-cve-2026-5027.html</guid>
      <description>The Hacker News reports on Langflow (CVE-2026-5027). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 15:00:59 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation</title>
      <link>https://thehackernews.com/2026/06/cisa-adds-cisco-chrome-and-arista-flaws.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/cisa-adds-cisco-chrome-and-arista-flaws.html</guid>
      <description>The Hacker News reports (CVE-2026-20245). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 14:44:29 GMT</pubDate>
    </item>
    <item>
      <title>Rapid7: CVE-2026-10520, CVE-2026-10523 - Multiple critical vulnerabilities affecting Ivanti Sentry</title>
      <link>https://www.rapid7.com/blog/post/etr-cve-2026-10520-cve-2026-10523-multiple-critical-vulnerabilities-affecting-ivanti-sentry</link>
      <guid isPermaLink="true">https://www.rapid7.com/blog/post/etr-cve-2026-10520-cve-2026-10523-multiple-critical-vulnerabilities-affecting-ivanti-sentry</guid>
      <description>Rapid7 reports (CVE-2026-10520). Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 10:21:07 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances</title>
      <link>https://thehackernews.com/2026/06/servicenow-flaw-exploited-to-gain.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/servicenow-flaw-exploited-to-gain.html</guid>
      <description>The Hacker News reports on ServiceNow. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 07:02:08 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows</title>
      <link>https://thehackernews.com/2026/06/microsoft-defender-rogueplanet-zero-day.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/microsoft-defender-rogueplanet-zero-day.html</guid>
      <description>The Hacker News reports on Defender. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Exploited</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 05:22:01 GMT</pubDate>
    </item>
    <item>
      <title>The Hacker News: Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS</title>
      <link>https://thehackernews.com/2026/06/six-proto6-vulnerabilities-in.html</link>
      <guid isPermaLink="true">https://thehackernews.com/2026/06/six-proto6-vulnerabilities-in.html</guid>
      <description>The Hacker News reports on Node.js. Machine-linked to tracked software by IsItPatched (BETA) — attributed, may be wrong; verify at the source.</description>
      <category>Reported</category>
      <source url="https://isitpatched.com/feed/emerging.xml">IsItPatched</source>
      <pubDate>Wed, 10 Jun 2026 05:08:35 GMT</pubDate>
    </item>
  </channel>
</rss>