Deep Security Center
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
LiteLLM
1012694 - LiteLLM Command Injection Vulnerability (CVE-2026-42271)
Web Application Common
1012686 - Krpano Panorama Viewer Reflected Cross-Site Scripting Vulnerability (CVE-2020-24901)
Web Server HTTPS
1012692 - Adobe Commerce and Magento Open Source Remote Code Execution Vulnerability (CVE-2026-75650)
1012695 - Joomla JCE Editor Extension RCE Vulnerability (CVE-2026-48907)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
LiteLLM
1012694 - LiteLLM Command Injection Vulnerability (CVE-2026-42271)
Web Application Common
1012686 - Krpano Panorama Viewer Reflected Cross-Site Scripting Vulnerability (CVE-2020-24901)
Web Server HTTPS
1012692 - Adobe Commerce and Magento Open Source Remote Code Execution Vulnerability (CVE-2026-75650)
1012695 - Joomla JCE Editor Extension RCE Vulnerability (CVE-2026-48907)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Ivanti Endpoint Manager
1012688 - Ivanti Endpoint Manager Authentication Bypass Vulnerability (CVE-2026-1603)
1012679 - Ivanti Endpoint Manager RCE Vulnerability (CVE-2025-4428)
Kentico Xperience
1012665 - Kentico Xperience Authentication Bypass Vulnerability (CVE-2025-2747)
Langflow
1012651 - Langflow Remote Code Execution Vulnerability (CVE-2025-34291)
Unix CUPS
1012689 - Openprinting Cups Print-Job Unauthorized Execution Vulnerability (CVE-2026-34980)
Unix Telnet
1012690 - Gnu Inetutils Telnetd Linemode Slc Out-Of-Bounds Write Vulnerability (CVE-2026-32746)
Web Server HTTPS
1012684 - Roundcube Webmail SQL Injection Vulnerability (CVE-2021-44026)
1012676 - Sangoma FreePBX Authentication Bypass Vulnerability (CVE-2019-19006)
1012671 - SonicWall Email Security Privilege Management Vulnerability (CVE-2021-20021)
Web Server IIS
1012687 - DotNetNuke Cookie Deserialization Remote Code Execution Vulnerability (CVE-2018-15811)
1012678 - Microsoft Exchange Server Elevation of Privilege Vulnerability (CVE-2026-62911)
Web Server Oracle
1012663 - Oracle HTTP Server WebLogic Proxy Plug-in Improper Access Control Vulnerability (CVE-2026-21962)
Web Server SharePoint
1012685 - Microsoft Office SharePoint Weak Authentication Vulnerability (CVE-2026-55040)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Ivanti Endpoint Manager
1012688 - Ivanti Endpoint Manager Authentication Bypass Vulnerability (CVE-2026-1603)
1012679 - Ivanti Endpoint Manager RCE Vulnerability (CVE-2025-4428)
Kentico Xperience
1012665 - Kentico Xperience Authentication Bypass Vulnerability (CVE-2025-2747)
Langflow
1012651 - Langflow Remote Code Execution Vulnerability (CVE-2025-34291)
Unix CUPS
1012689 - Openprinting Cups Print-Job Unauthorized Execution Vulnerability (CVE-2026-34980)
Unix Telnet
1012690 - Gnu Inetutils Telnetd Linemode Slc Out-Of-Bounds Write Vulnerability (CVE-2026-32746)
Web Server HTTPS
1012684 - Roundcube Webmail SQL Injection Vulnerability (CVE-2021-44026)
1012676 - Sangoma FreePBX Authentication Bypass Vulnerability (CVE-2019-19006)
1012671 - SonicWall Email Security Privilege Management Vulnerability (CVE-2021-20021)
Web Server IIS
1012687 - DotNetNuke Cookie Deserialization Remote Code Execution Vulnerability (CVE-2018-15811)
1012678 - Microsoft Exchange Server Elevation of Privilege Vulnerability (CVE-2026-62911)
Web Server Oracle
1012663 - Oracle HTTP Server WebLogic Proxy Plug-in Improper Access Control Vulnerability (CVE-2026-21962)
Web Server SharePoint
1012685 - Microsoft Office SharePoint Weak Authentication Vulnerability (CVE-2026-55040)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Kerberos KDC Server
1012681 - Windows Kerberos Remote Code Execution Vulnerability (CVE-2026-69676)
MLflow
1012667 - Mlflow Unauthenticated Endpoint Redirect Vulnerability (CVE-2026-64849)
Mail Server Common
1012666 - Zimbra Collaboration SNMP Notification Remote Code Execution Vulnerability (CVE-2026-73570)
Ray Framework
1012673 - Ray Ai Compute Engine Remote Code Execution Vulnerability (CVE-2025-62593)
Server CLDAP
1012563* - Windows Netlogon Remote Code Execution Vulnerability (CVE-2026-41089)
Web Application Common
1012660 - Starlette Host Header Validation Bypass Vulnerability (CVE-2026-48710)
Web Server Common
1012672 - VMware Workspace ONE UEM Server-Side Request Forgery Vulnerability (CVE-2021-22054)
Web Server HTTPS
1012670 - Citrix Session Recording Privilege Escalation Vulnerability (CVE-2024-8068)
1012677 - DELMIA Apriso Deserialization Vulnerability (CVE-2025-5086)
1012675 - Gladinet Triofox Authentication Bypass Vulnerability (CVE-2025-12480)
1012680 - SAP Buffer Overflow Vulnerability (CVE-2026-44756)
1012682 - Windows HTTP Print Provider Remote Code Execution Vulnerability (CVE-2026-69623)
1012669 - ZKTeco BioTime Path Traversal Vulnerability (CVE-2023-38950)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Kerberos KDC Server
1012681 - Windows Kerberos Remote Code Execution Vulnerability (CVE-2026-69676)
MLflow
1012667 - Mlflow Unauthenticated Endpoint Redirect Vulnerability (CVE-2026-64849)
Mail Server Common
1012666 - Zimbra Collaboration SNMP Notification Remote Code Execution Vulnerability (CVE-2026-73570)
Ray Framework
1012673 - Ray Ai Compute Engine Remote Code Execution Vulnerability (CVE-2025-62593)
Server CLDAP
1012563* - Windows Netlogon Remote Code Execution Vulnerability (CVE-2026-41089)
Web Application Common
1012660 - Starlette Host Header Validation Bypass Vulnerability (CVE-2026-48710)
Web Server Common
1012672 - VMware Workspace ONE UEM Server-Side Request Forgery Vulnerability (CVE-2021-22054)
Web Server HTTPS
1012670 - Citrix Session Recording Privilege Escalation Vulnerability (CVE-2024-8068)
1012677 - DELMIA Apriso Deserialization Vulnerability (CVE-2025-5086)
1012675 - Gladinet Triofox Authentication Bypass Vulnerability (CVE-2025-12480)
1012680 - SAP Buffer Overflow Vulnerability (CVE-2026-44756)
1012682 - Windows HTTP Print Provider Remote Code Execution Vulnerability (CVE-2026-69623)
1012669 - ZKTeco BioTime Path Traversal Vulnerability (CVE-2023-38950)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
IBM Cognos TM1 Admin Server
1012650 - IBM Planning Analytics Code Injection Vulnerability (CVE-2019-4716)
JFrog
1012668 - JFrog Artifactory Authentication Bypass Vulnerability (CVE-2026-82329)
Kentico Xperience
1012646 - Kentico Xperience Directory Traversal Vulnerability (CVE-2025-2749)
SmarterTools SmarterMail
1012647 - SmarterMail ConnectToHub Unauthenticated RCE (CVE-2026-24423)
Web Application Common
1012659 - Kestra Authentication Bypass Vulnerability (CVE-2026-49869)
Web Application PHP Based
1012656 - Mirasvit Cache Warmer Deserialization Vulnerability (CVE-2026-45247)
Web Server Common
1012662 - Gitea Diffpatch API Git Hook Remote Code Execution Vulnerability (CVE-2026-60004)
1012653 - Sitecore Cms Insecure Deserialization Vulnerability (CVE-2019-9874)
1012655 - Sitecore Cms Insecure Deserialization Vulnerability (CVE-2019-9875)
Web Server HTTPS
1012657 - ATEN Unizon writeFileToHttp Directory Traversal Information Disclosure Vulnerability (CVE-2026-9776)
1012658 - Laravel Livewire Code Injection Vulnerability (CVE-2025-54068)
1012664 - Sangoma Switchvox SQL Injection Vulnerability (CVE-2026-9586)
Web Server SharePoint
1012652 - Microsoft SharePoint Remote Code Execution Vulnerability (CVE-2026-20963)
ZohoCorp ManageEngine Desktop Central
1012642 - Zoho ManageEngine Desktop Central Filter Configuration Authentication Bypass Vulnerability (CVE-2021-44515)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
IBM Cognos TM1 Admin Server
1012650 - IBM Planning Analytics Code Injection Vulnerability (CVE-2019-4716)
JFrog
1012668 - JFrog Artifactory Authentication Bypass Vulnerability (CVE-2026-82329)
Kentico Xperience
1012646 - Kentico Xperience Directory Traversal Vulnerability (CVE-2025-2749)
SmarterTools SmarterMail
1012647 - SmarterMail ConnectToHub Unauthenticated RCE (CVE-2026-24423)
Web Application Common
1012659 - Kestra Authentication Bypass Vulnerability (CVE-2026-49869)
Web Application PHP Based
1012656 - Mirasvit Cache Warmer Deserialization Vulnerability (CVE-2026-45247)
Web Server Common
1012662 - Gitea Diffpatch API Git Hook Remote Code Execution Vulnerability (CVE-2026-60004)
1012653 - Sitecore Cms Insecure Deserialization Vulnerability (CVE-2019-9874)
1012655 - Sitecore Cms Insecure Deserialization Vulnerability (CVE-2019-9875)
Web Server HTTPS
1012657 - ATEN Unizon writeFileToHttp Directory Traversal Information Disclosure Vulnerability (CVE-2026-9776)
1012658 - Laravel Livewire Code Injection Vulnerability (CVE-2025-54068)
1012664 - Sangoma Switchvox SQL Injection Vulnerability (CVE-2026-9586)
Web Server SharePoint
1012652 - Microsoft SharePoint Remote Code Execution Vulnerability (CVE-2026-20963)
ZohoCorp ManageEngine Desktop Central
1012642 - Zoho ManageEngine Desktop Central Filter Configuration Authentication Bypass Vulnerability (CVE-2021-44515)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
DHCP Server
1012640 - Windows DHCP Server Remote Code Execution Vulnerability (CVE-2026-50518)
Kentico Xperience
1012648 - Kentico Xperience Staging Service Authentication Bypass Vulnerability (CVE-2025-2746)
PaperCut
1012649 - PaperCut Authentication Bypass and RCE Vulnerability (CVE-2026-81578 and CVE-2026-82078)
Web Server Common
1012643 - Zabbix Authentication Bypass Vulnerability (CVE-2022-23134)
Web Server HTTPS
1012645 - Adminer Server-Side Request Forgery Vulnerability (CVE-2021-21311)
1012654 - SimpleHelp OpenID Connect Authentication Bypass Vulnerability (CVE-2026-48558)
Web Server Oracle
1012624 - Oracle Java SE Sandbox Bypass Vulnerability (CVE-2025-30761)
Integrity Monitoring Rules:
1002853* - Application - Apache Tomcat
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
DHCP Server
1012640 - Windows DHCP Server Remote Code Execution Vulnerability (CVE-2026-50518)
Kentico Xperience
1012648 - Kentico Xperience Staging Service Authentication Bypass Vulnerability (CVE-2025-2746)
PaperCut
1012649 - PaperCut Authentication Bypass and RCE Vulnerability (CVE-2026-81578 and CVE-2026-82078)
Web Server Common
1012643 - Zabbix Authentication Bypass Vulnerability (CVE-2022-23134)
Web Server HTTPS
1012645 - Adminer Server-Side Request Forgery Vulnerability (CVE-2021-21311)
1012654 - SimpleHelp OpenID Connect Authentication Bypass Vulnerability (CVE-2026-48558)
Web Server Oracle
1012624 - Oracle Java SE Sandbox Bypass Vulnerability (CVE-2025-30761)
Integrity Monitoring Rules:
1002853* - Application - Apache Tomcat
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Web Server Common
1012644 - Qlik Sense Enterprise Transfer-Encoding Request Smuggling Vulnerability (CVE-2023-48365)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Web Server Common
1012644 - Qlik Sense Enterprise Transfer-Encoding Request Smuggling Vulnerability (CVE-2023-48365)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Web Server Common
1011265* - Apache Log4j Remote Code Execution Vulnerability (CVE-2021-45046)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Web Server Common
1011265* - Apache Log4j Remote Code Execution Vulnerability (CVE-2021-45046)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
JetBrains TeamCity
1012637 - JetBrains TeamCity Insecure Deserialization Vulnerability (CVE-2026-63077)
Web Server HTTPS
1012639 - Metabase Unauthenticated Attack Code Injection Vulnerability (CVE-2026-72898)
1012638 - WordPress Cross-Site Scripting Vulnerability (CVE-2026-64638)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
JetBrains TeamCity
1012637 - JetBrains TeamCity Insecure Deserialization Vulnerability (CVE-2026-63077)
Web Server HTTPS
1012639 - Metabase Unauthenticated Attack Code Injection Vulnerability (CVE-2026-72898)
1012638 - WordPress Cross-Site Scripting Vulnerability (CVE-2026-64638)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Langflow
1012619 - Langflow Code Injection Remote Code Execution Vulnerability (CVE-2025-3248)
NFS Server
1012627 - Linux Kernel Nfsv4.0 Lock Replay Cache Heap Overflow Vulnerability (CVE-2026-31402)
cPanel
1012628 - WebPros cPanel Code Injection Vulnerability (CVE-2026-29202)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Langflow
1012619 - Langflow Code Injection Remote Code Execution Vulnerability (CVE-2025-3248)
NFS Server
1012627 - Linux Kernel Nfsv4.0 Lock Replay Cache Heap Overflow Vulnerability (CVE-2026-31402)
cPanel
1012628 - WebPros cPanel Code Injection Vulnerability (CVE-2026-29202)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Web Server HTTPS
1012636 - Draytek Vigorconnect Directory Traversal Vulnerability (CVE-2021-20124)
1012632 - ServiceNow Code Injection Vulnerability (CVE-2026-6875)
1012631 - Sitecore Experience Commerce Insecure Deserialization Vulnerability (CVE-2025-53690)
Web Server SharePoint
1012629 - Microsoft SharePoint Server Authentication Bypass Vulnerability (CVE-2023-29357)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Web Server HTTPS
1012636 - Draytek Vigorconnect Directory Traversal Vulnerability (CVE-2021-20124)
1012632 - ServiceNow Code Injection Vulnerability (CVE-2026-6875)
1012631 - Sitecore Experience Commerce Insecure Deserialization Vulnerability (CVE-2025-53690)
Web Server SharePoint
1012629 - Microsoft SharePoint Server Authentication Bypass Vulnerability (CVE-2023-29357)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.