Cisco fixed four critical flaws in Identity Services and Webex
2026-04-17T02:51:46Z•7d58bed6cfce4973f296236ee07f220db96cbf37228a4708a463645ffdee6d0c
Android-RATCVE-2026-32201CVE-2026-33032CiscoIdentity-ServicesMicrosoft-Patch-TuesdayMiraxRhysidaSharePointSwedenUAC-0247Webexactive-exploitationcritical-vulnerabilitiesdata-breachenergy-infrastructureespionageheating-plantmalware-deliveryn8nnginxphishingphp-composerransomwaresupply-chain
What happened
Multiple high-impact security events and active exploitations were reported: a critical nginx-ui authentication bypass (CVE-2026-33032, CVSS 9.8) is being actively exploited to gain full server control; Microsoft’s April Patch Tuesday fixed 165 issues including an actively exploited SharePoint zero-day (CVE-2026-32201). Cisco patched four critical flaws in Identity Services and Webex that could enable RCE and user impersonation. A Rhysida ransomware attack on Cookeville Regional Medical Center exposed ~500 GB of data impacting ~337,917 individuals. Threat actors abused the n8n AI automation/CI
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 7d58bed6cfce4973f296236ee07f220db96cbf37228a4708a463645ffdee6d0c
- Enrichment time
- 2026-04-17T02:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.