Splunk, Zoom Patch Critical Vulnerabilities
The flaws could allow attackers to access credentials and data, take over accounts, and escalate their privileges. The post Splunk, Zoom Patch Critical Vulnerabilities appeared first on SecurityWeek.
Splunk and Zoom this week announced patches for multiple vulnerabilities across their products, including several critical and high-severity security defects.
Only three of the five advisories that Splunk published address flaws that are specific to its products, while the other two resolve dozens of bugs in third-party components.
The Splunk-specific issues include CVE-2026-20296 (a high-severity command safeguards bypass), CVE-2026-20297 (a high-severity path traversal), and CVE-2026-20298 (a medium-severity information disclosure).
Source: https://www.securityweek.com/splunk-zoom-patch-critical-vulnerabilities/
Related breach coverage
- SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud2026-07-14
The flaws could allow attackers to access and modify data, and cause system unavailability and request-response desynchronization. The post SAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud appeared first on SecurityWeek.
- Adobe Patches Critical ColdFusion Vulnerabilities2026-07-14
The ColdFusion security defects could allow attackers to execute arbitrary code or elevate their privileges. The post Adobe Patches Critical ColdFusion Vulnerabilities appeared first on SecurityWeek.
- Vulnerabilities Patched by Fortinet, Ivanti, ServiceNow2026-07-15
A critical security defect in the ServiceNow AI platform could allow remote attackers to execute arbitrary code. The post Vulnerabilities Patched by Fortinet, Ivanti, ServiceNow appeared first on SecurityWeek.
- Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities2026-07-16
The cybersecurity companies patched critical and high-severity vulnerabilities in some of their products. The post Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities appeared first on SecurityWeek.
