STRATQUAD
CYBER THREAT INTELLIGENCE BRIEF
Daily Brief · 20 August 2026 · 24h windowRISKCRITICAL
StratQuad CTI Daily Brief, 20 August 2026Compiled from 52 monitored sources · 1076 articles reviewed
Today’s Briefing
CISA added CVE-2026-64849, a server-side request forgery in MLflow, to the Known Exploited Vulnerabilities catalog on evidence of active exploitation. CISA also published an active threat advisory for Siemens S7 series programmable logic controllers, noting that ongoing targeting extends beyond Siemens to PLCs generally. Citrix released an authentication bypass fix for NetScaler ADC and NetScaler Gateway (CVE-2026-19490), and Oracle shipped 943 security updates in its August critical patch update.
Top Stories
- CC-4834 - Citrix Releases Security Updates for NetScaler ADC and NetScaler Gateway
- CC-4833 - Oracle Releases August 2026 Critical Patch Update Advisory
- CISA Adds One Known Exploited Vulnerability to Catalog
- Defending Against an Active Threat to Siemens S7 Series PLCs
Full brief available to subscribers
The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.