August 29, 2026
- Ebyte NE2-D11 devices carry a missing-authentication bug (CVE-2026-73125, CVSS 9.8) exposing admin functionality to unauthenticated remote attackers on firmware FW-9167-0-11; a patch is still in development and CISA says it has not been given mitigations (CISA ICS advisory). · Vulnerabilities & Exploits
in PaperCut Ships a Second Emergency Patch After Researchers Bypass the First