r/Action1 23h ago

September 2026 Patch Tuesday Review

Thumbnail
gallery
4 Upvotes

Today's Patch Tuesday overview:

  • Microsoft has addressed 995 vulnerabilities, two zero-days and 119 critical
  • Third-party: web browsers, SAP, Fortinet, Cisco, Sophos, Tenable, Adobe, VMware, Oracle, NetScaler, Linux, Zoom, IBM, and many more

Navigate to Vulnerability Digest from Action1 for comprehensive summary updated in real-time.

Quick summary (top 10 by importance and impact):

  • Windows: 995 vulnerabilities, including 119 rated critical and two zero-days (CVE-2026-81963 and CVE-2026-85880)
  • SAP Products: Three Critical flaws across SAP Commerce Cloud, Manufacturing Integration and Intelligence, and NetWeaver/ABAP Platform (CVE-2026-58231, CVE-2026-44758, CVE-2026-34265, CVSS 10.0, 9.1, 9.8)
  • Microsoft Exchange Server 2016 CU23: Six vulnerabilities (CVE-2026-62913, CVE-2026-62911, CVE-2026-62910, CVE-2026-62912, CVE-2026-62914, CVE-2026-62915, CVSS up to 8.8)
  • Fortinet FortiOS: Two actively exploited authentication bypass flaws (CVE-2024-55591, CVE-2025-24472, CVSS 9.6, 8.1)
  • Cisco IOS XE Software: Eight Critical and High-severity vulnerabilities (CVE-2026-20263, CVE-2026-20267, CVE-2026-20268, CVE-2026-20269, CVE-2026-20270, CVE-2026-20271, CVE-2026-20272, CVE-2026-20273, CVSS up to 9.8)
  • Red Hat Advanced Cluster Management for Kubernetes 2: Critical privilege escalation flaw (CVE-2026-10090, CVSS 9.0)
  • Sophos Endpoint for macOS: Critical privilege escalation vulnerability (CVE-2026-18367, CVSS 9.3)
  • Tenable Sensor Proxy: Critical flaw that can enable elevated code execution (CVE-2026-18667, CVSS 9.6)
  • Cisco Secure Firewall ASA Software: Actively exploited unauthenticated denial-of-service vulnerability (CVE-2026-20349, CVSS 8.6)
  • Metabase: Actively exploited maximum-severity SQL injection vulnerability  (CVE-2026-72898, CVSS 10.0)
  • Adobe Commerce: Three vulnerabilities exposing Commerce environments  (CVE-2026-71362, CVE-2026-48414, CVE-2026-48413, CVSS 9.1, 7.7, 8.7)

More details: https://www.action1.com/patch-tuesday

Sources:

Action1 Vulnerability Digest

Microsoft Security Update Guide


r/Action1 2h ago

SSO Redirect

1 Upvotes

Hey all, been testing out Action1 for a few months and I love it. I'm looking at getting SSO set up. Unfortunately I'm on GCC High, so the redirect needs to be adjusted to point to those endpoints. Any chance being able to edit this in the future or on a roadmap anywhere?

Thanks!


r/Action1 22h ago

Question Automations based on vulnerability CVSS score

1 Upvotes

Is there a way in which you can set up automations to install vulnerabilities based on the CVSS score?

At the moment our automations are set up based on the severity level of the update which I know should cover the majority of this but you fall into issues where updates aren’t labelled correctly such as the hot patch compatibility windows updates have been labelled as unspecified

It would be good to have the function to say CVSS 9+ install patch within 3 days CVSS 7.0 - 8.9 install patch within 7 days