Patches for CVE-2025-40599, a critical vulnerability that involves an arbitrary file upload issue in Secure Mobile Access (SMA) 100 appliances' web management interface, were released by SonicWall and included in software version 10.2.2.1-90sv and 500v virtual products, SecurityWeek reports.
Sygnia, a cybersecurity firm, reported that a threat actor known as Fire Ant is targeting virtualization and networking infrastructure, The Hacker News reports.
SecurityWeek reports that updates have been issued by Sophos to address five Sophos Firewall flaws including a critical arbitrary file writing issue, tracked as CVE-2025-6704, and a critical SQL injection bug, tracked as CVE-2025-7624, which could be leveraged to facilitate remote code execution.
BleepingComputer reports that vulnerable SysAid IT service management software instances impacted by the unauthenticated XML External Entity bugs, tracked as CVE-2025-2775 and CVE-2025-2776, were noted by the Cybersecurity and Infrastructure Security Agency to be subjected to ongoing intrusions.