CuraSec

tag: Iac-Security · 1 items

2026-08-06 · The Hacker News · source ↗ #vulnerability#patch#iac-security
  • Engineer — Plan: Critical-severity patches in three commonly deployed tools — the Veeam Service Provider Console unauthenticated credential leak (CVSS 9.5) and the Terraform MCP Server cross-tenant token reuse (CVSS 10.0) are high priority; no KEV listing or public PoC yet, but patch Veeam VSPC and Terraform MCP Server to the latest fixed releases within your next patch window.
  • SOC/IR — Skip
  • Leader — Skip