Trend Micro security patch release for CVE-2025-69258
Security Patch Release
Summary
Hide ▲
Show ▼
Trend Micro released security updates for Apex Central for Windows to fix CVE-2025-69258, a 9.8 CVSS remote-code-execution flaw that could let an unauthenticated attacker load an attacker-controlled DLL and run code as SYSTEM. The same release also patches CVE-2025-69259 and CVE-2025-69260, both 7.5 CVSS denial-of-service bugs affecting on-premise versions below Build 7190. Customers were advised to apply the patches and review remote access to critical systems.
Related Happenings
Pretalx version 2026.1.0 security update for CVE-2026-41241
Security Patch Release
First: 27.05.2026 17:30
Last: 27.05.2026 17:30
Sources 1
About this happening:
**Pretalx** released **version 2026.1.0** to patch **CVE-2026-41241**, a **stored XSS** flaw that could compromise organizer accounts in conference deployments. The update closes...
Pretalx version 2026.1.0 security update for CVE-2026-41241
Security Patch ReleaseAbout this happening: **Pretalx** released **version 2026.1.0** to patch **CVE-2026-41241**, a **stored XSS** flaw that could compromise organizer accounts in conference deployments. The update closes...
Microsoft security patch release for CVE-2026-45659
Security Patch Release
First: 26.05.2026 14:49
Last: 26.05.2026 14:49
Sources 1
About this happening:
Microsoft released **SharePoint** updates for **CVE-2026-45659**, a **remote code execution** flaw that could let an authenticated attacker run code over the network without eleva...
Microsoft security patch release for CVE-2026-45659
Security Patch ReleaseAbout this happening: Microsoft released **SharePoint** updates for **CVE-2026-45659**, a **remote code execution** flaw that could let an authenticated attacker run code over the network without eleva...
Drupal core security update for CVE-2026-9082
Security Patch Release
First: 22.05.2026 16:14
Last: 22.05.2026 16:14
Sources 1
About this happening:
**Drupal** released security updates for **CVE-2026-9082**, a highly critical SQL injection flaw affecting **PostgreSQL**-backed sites, and urged administrators to **upgrade immed...
Drupal core security update for CVE-2026-9082
Security Patch ReleaseAbout this happening: **Drupal** released security updates for **CVE-2026-9082**, a highly critical SQL injection flaw affecting **PostgreSQL**-backed sites, and urged administrators to **upgrade immed...
TrendAI Trend Micro’s enterprise business security patch release for CVE-2026-34926
Security Patch Release
First: 22.05.2026 11:19
Last: 22.05.2026 11:19
Sources 1
About this happening:
**TrendAI** released **Apex One** security updates after confirming a **zero-day** had been **exploited in the wild**, leaving **on-premises installations** at risk until patched....
TrendAI Trend Micro’s enterprise business security patch release for CVE-2026-34926
Security Patch ReleaseAbout this happening: **TrendAI** released **Apex One** security updates after confirming a **zero-day** had been **exploited in the wild**, leaving **on-premises installations** at risk until patched....
Cisco Secure Workload REST API patch release (CVE-2026-20223)
Security Patch Release
First: 22.05.2026 08:36
Last: 22.05.2026 08:36
Sources 1
About this happening:
Cisco patched **CVE-2026-20223**, a **CVSS 10.0** Secure Workload REST API flaw that could expose sensitive data and allow configuration changes across tenant boundaries. The upda...
Cisco Secure Workload REST API patch release (CVE-2026-20223)
Security Patch ReleaseAbout this happening: Cisco patched **CVE-2026-20223**, a **CVSS 10.0** Secure Workload REST API flaw that could expose sensitive data and allow configuration changes across tenant boundaries. The upda...
Timeline
-
09.01.2026 12:01 2 articles · 4mo ago
Trend Micro patches Apex Central for Windows vulnerabilities
Mitigation Patch UpdateTrend Micro released security updates for on-premise Apex Central for Windows versions below Build 7190 to address CVE-2025-69258, a 9.8 CVSS LoadLibraryEX flaw that could let an unauthenticated remote attacker load an attacker-controlled DLL and execute code as SYSTEM, plus CVE-2025-69259 and CVE-2025-69260, two 7.5 CVSS message-handling bugs that could trigger denial of service. Trend Micro advised customers to apply the patches and review remote access to critical systems, and said successful exploitation requires physical or remote access to a vulnerable endpoint.
Show sources
- Trend Micro Apex Central RCE Flaw Scores 9.8 CVSS in On-Prem Windows Versions — thehackernews.com — 09.01.2026 12:01
- Trend Micro Apex Central RCE Flaw Scores 9.8 CVSS in On-Prem Windows Versions — thehackernews.com — 09.01.2026 12:01