On 4 September 2026, BSI (German federal cybersecurity agency) disclosed multiple vulnerabilities across SEPPmail, Kibana, Google Chrome, Microsoft Cloud services, and the vm2 JavaScript sandbox. vm2 rated critical for remote code execution; others rated high. No active exploitation was reported.
11 reportsother
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
🟠 HOCH · Google Chrome: mehrere Schwachstellen Angriffsweg: aus dem Netz CERT-Bund (BSI) https://www. neonotu.com/de/insights/google -chrome-wid-sec-2026-3175/
🔴 KRITISCH · Google Chrome: eine Schwachstelle Angriffsweg: aus dem Netz NVD (NIST) https://www. neonotu.com/de/insights/google -chrome-cve-2026-85043/