Find notable cyber news and cases, enriched with sources, timelines, and signals.

Trend Micro security patch release for CVE-2025-71210

Security Patch Release
First reported
Last updated
Happening score
H score 23
1 unique sources, 1 articles

Summary

Hide ▲

Trend Micro released Critical Patch Build 14136 for Apex One, closing two critical vulnerabilities that could allow remote code execution on vulnerable Windows systems. The patched flaws, CVE-2025-71210 and CVE-2025-71211, are path traversal bugs in the management console. Trend Micro also said the build fixes two high-severity privilege escalation flaws in the Windows agent and four more in the macOS agent. The company urged customers to update to the latest builds and, where the console is exposed externally, apply source restrictions.

Related Happenings

TrendAI Trend Micro’s enterprise business security patch release for CVE-2026-34926

Security Patch Release
First: 22.05.2026 11:19 Last: 22.05.2026 11:19 Sources 1

About this happening: **TrendAI** released **Apex One** security updates after confirming a **zero-day** had been **exploited in the wild**, leaving **on-premises installations** at risk until patched....

Avada Builder 3.15.3 patch release (CVE-2026-4782, CVE-2026-4798)

Security Patch Release
First: 15.05.2026 18:56 Last: 15.05.2026 18:56 Sources 1

About this happening: **Avada Builder** shipped **version 3.15.3** as the full fix for **CVE-2026-4782** and **CVE-2026-4798**, closing the plugin flaws that could expose files and database data. A pri...

Microsoft security patch release for CVE-2026-41089

Security Patch Release
First: 13.05.2026 00:46 Last: 13.05.2026 00:46 Sources 1

About this happening: **Microsoft** and other major software vendors shipped a heavy **May 2026** patch cycle, with fixes spanning **Windows**, **iOS**, **Firefox**, **Oracle** products, and **Chrome**...

Linux kernel Dirty Frag patch release (CVE-2026-43284, CVE-2026-43500)

Security Patch Release
First: 11.05.2026 17:30 Last: 11.05.2026 17:30 Sources 1

About this happening: **Major Linux distributions** are rolling out fixes for **Dirty Frag**, the **Linux kernel** patch release that covers **CVE-2026-43284** and **CVE-2026-43500**. The update matter...

Progress Software security patch release for CVE-2026-4670

Security Patch Release
First: 04.05.2026 19:34 Last: 04.05.2026 19:34 Sources 1

About this happening: **Progress Software** has released **MOVEit Automation** updates to fix **CVE-2026-4670** and **CVE-2026-5174**, including a **critical authentication bypass** that could expose e...

Timeline

  1. 26.02.2026 19:58 2 articles · 3mo ago

    Trend Micro warns about two critical Apex One RCE flaws

    Initial Disclosure

    Trend Micro warned Apex One customers that two critical path traversal flaws in the Trend Micro Apex One management console, CVE-2025-71210 and CVE-2025-71211, can let attackers with console access execute malicious code on vulnerable Windows systems, and urged updating to the latest builds while restricting externally exposed console IPs.

    Show sources