As cited
Copy frozen at (site build).
vulnerabilities
July 2026 CVE Landscape
Insikt Group identified 85 high-impact vulnerabilities in July 2026, representing a 44% increase from the previous month, with 36 carrying a Very Critical Risk Score. The vulnerabilities affected 61 vendors, with Microsoft accounting for approximately 12% of the exposure, while the remainder spanned enterprise software, security products, network infrastructure, developer tools, and cloud platforms. Twenty-six vulnerabilities were listed in CISA's Known Exploited Vulnerabilities catalog, 55 were reported by vendors, and four were surfaced through honeypot data, with the majority showing active exploitation or operational weaponization.
Why it matters: Vulnerability management teams and enterprise security practitioners need to prioritize remediation of these 85 vulnerabilities, especially the 36 with Very Critical scores, to reduce exposure across their Microsoft, Fortinet, Cisco, and other affected infrastructure.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
July 2026 CVE Landscape
Insikt Group identified 85 high-impact vulnerabilities in July 2026, representing a 44% increase from the previous month, with 36 carrying a Very Critical Risk Score. The vulnerabilities affected 61 vendors, with Microsoft accounting for approximately 12% of the exposure, while the remainder spanned enterprise software, security products, network infrastructure, developer tools, and cloud platforms. Twenty-six vulnerabilities were listed in CISA's Known Exploited Vulnerabilities catalog, 55 were reported by vendors, and four were surfaced through honeypot data, with the majority showing active exploitation or operational weaponization.
Why it matters: Vulnerability management teams and enterprise security practitioners need to prioritize remediation of these 85 vulnerabilities, especially the 36 with Very Critical scores, to reduce exposure across their Microsoft, Fortinet, Cisco, and other affected infrastructure.
- Source published
- First seen by Cybersecurity Tracker