Weekly dossier · 2026-W29
Joel Traber AG
13.07.2026 – 19.07.2026
Strategic overview
HIGHIn KW 29, several critical vulnerabilities were disclosed that directly affect core components of Joel Traber AG's IT infrastructure, including SAP NetWeaver, Microsoft SQL Server, SharePoint, and Active Directory. The combination of remote code execution risks in SQL Server and the ODBC driver, alongside memory corruption flaws in Active Directory, poses a significant threat to the ERP landscape and manufacturing operations.
- Alerts
- 146
- CVEs
- 640
- KEV
- 0
- Critical
- 56
Top news
- TAKTISCH Zero Day Initiative - BlogThe July 2026 Security Update Review
[The July 2026 Security Update Review] Well folks. Here we are. The bug apocalypse has fully descended upon us. I’ll do my best to sort this out in some way meaningful, but this month’s release shows us the nay-sayers were right, and I’ve got to hand it to the nay-sayers here. Excellent call.
→ Monthly security patch review covering Microsoft Office, Windows DHCP, and Adobe products relevant to the company's tech stack; however, this is a general digest without specific threat intelligence or active campaign details.
- INFORMATIV Rapid7 Cybersecurity BlogCVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)
An authentication bypass (CVE-2026-55040) was chained by Rapid7 Labs with a separate RCE vulnerability to achieve unauthenticated remote code execution; patching the bypass breaks the exploit chain.
→ CVE-2026-55040 directly affects Microsoft SharePoint, which is in the company's tech stack (Microsoft 365 Teams, SharePoint, OneDrive); authentication bypass chained with RCE poses significant risk to collaboration and data access infrastructure.
Research Deep Dives
View all →- ZERO DAY INITIATIVE - BLOG 14/07/2026The July 2026 Security Update Review
The July 2026 Patch Tuesday brings a record 621 Microsoft vulnerabilities, including two actively exploited zero-days. Adobe releases 88 CVEs across 12 products, with ColdFusion and Commerce requiring priority. Updates span a wide range of Microsoft products such as Windows, Office, Azure, Exchange, and even games. Of particular concern is a privilege escalation in Active Directory Federation Services (CVE-2026-56155), which may be linked to ransomware campaigns.
- RAPID7 CYBERSECURITY BLOG 14/07/2026CVE-2026-55040: Microsoft SharePoint JWT Token Authentication Bypass (FIXED)
Rapid7 Labs discovered a vulnerability in Microsoft SharePoint that allows bypassing JWT token authentication (CVE-2026-55040). An unauthenticated attacker can assume the identity of any SharePoint user, provided they know the user's username or SID. This vulnerability was chained with an RCE flaw to achieve unauthenticated remote code execution; the RCE component is expected to be patched in August 2026. The authentication bypass itself has already been fixed.
- MICROSOFT SECURITY BLOG 13/07/2026Defending SaaS-based applications against ShinyHunters OAuth abuse
Between mid-2025 and mid-2026, Microsoft observed ShinyHunters campaigns abusing OAuth trust relationships in SaaS applications like Salesforce. The threat actors used voice phishing, supply chain compromise via trusted integrations, and misconfigured guest access to gain unauthorized access, exfiltrate data, and establish persistence. This tradecraft allowed them to operate within legitimate workflows while evading conventional authentication detections. For organizations like Joel Traber AG in manufacturing, it is critical to monitor OAuth-connected applications, validate third-party integrations, and review guest access configurations.
Top vendors
- Microsoft 97
- Fortinet 11
- Sap 10
- 7-Zip 2
- Siemens 2
- OpenSSH 2
Top CVEs
- CVE-2026-59841 CVE-2026-59841 7.5
- CVE-2026-44747 CVE-2026-44747: SAP NetWeaver Application Server ABAP Memory Corruption Vulnerability 9.9
- CVE-2026-42990 CVE-2026-42990: Heap-based Buffer Overflow in SQL Server ODBC Driver Allows Remote Code Execution 9.8
- CVE-2026-49172 CVE-2026-49172: Heap-Based Buffer Overflow in Windows FTP Service 9.8
- CVE-2026-50522 CVE-2026-50522 9.8
- CVE-2026-48561 CVE-2026-48561 9.6