CVE Tools

Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026

Help Net SecurityBy Anamarija Pogorelec

Roundup

Our summary

This weekly digest covers several major security developments, including a critical vulnerability in Cisco Integrated Management Controller (CVE-2026-20200) that allows root-level command execution and has a publicly available proof-of-concept exploit. Attackers are also actively leveraging an authentication bypass flaw in N-able N-central (CVE-2026-18577) to compromise managed endpoints. Additionally, the report details significant outcomes from Black Hat USA 2026, such as a pre-authentication remote code execution vulnerability in Bonita BPM and updates regarding EU AI Act enforcement.

Read at Help Net Security

Help Net Security publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store