Week in review: Cisco fixes IMC bug, Patch Tuesday forecast, Black Hat USA 2026
RoundupOur summary
This weekly digest covers several major security developments, including a critical vulnerability in Cisco Integrated Management Controller (CVE-2026-20200) that allows root-level command execution and has a publicly available proof-of-concept exploit. Attackers are also actively leveraging an authentication bypass flaw in N-able N-central (CVE-2026-18577) to compromise managed endpoints. Additionally, the report details significant outcomes from Black Hat USA 2026, such as a pre-authentication remote code execution vulnerability in Bonita BPM and updates regarding EU AI Act enforcement.
Help Net Security publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.