logo

CVE Weekly Roundup: July 27 – August 2, 2026

ID: e88bce57-ee56-5af5-87b2-3d22695baeb3

STIX ID: report--e88bce57-ee56-5af5-87b2-3d22695baeb3

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-08-03

Date Updated: 2026-08-03

Author: Do Son

...
...

Weekly CVE roundup (July 27–Aug 2, 2026) reporting 2,077 new vulnerabilities — 273 Critical, 624 High, and 14 CVSS 10.0 entries — with notable issues including Apache Traffic Server CVSS 10.0 bugs, an Azure Cosmos DB code‑execution flaw, and an Adobe Campaign Classic bypass. The report lists four confirmed actively exploited threats (including VMware VeloCloud Orchestrator and a WordPress ARVE plugin supply‑chain backdoor), and recommends immediate patching of CISA KEV items, removal or downgrade of the compromised ARVE release, and upgrades for affected Apache Traffic Server and other products.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.