The US Cybersecurity and Infrastructure Security Agency (CISA) has alerted organizations about a new vulnerability in NextGen Healthcare Mirth Connect, used largely in healthcare IT. The vulnerability allows code execution and has yet to be assigned a severity score. CISA has given federal agencies until June 10 to update Mirth Connect to version 4.1.1.

Axis Communications Vulnerability Exposes Azure Storage Account Credentials
A critical vulnerability in Axis Communications’ Autodesk Revit plugin has exposed Azure Storage Account credentials, creating significant security risks for customers and potentially enabling supply