Announcements

WordPress Core: WordPress Core SQL Injection Vulnerability

  • 23rd July 2026
A security flaw has been identified in WordPress core, the base software that runs all WordPress websites. This flaw is a database vulnerability called SQL injection, which lets attackers sneak harmful commands into your site's database if a plugin or theme installed on your site passes unvetted user input to a specific core parameter.This flaw ...
Continue reading

Microsoft SharePoint: Microsoft SharePoint Deserialization of Untrusted Data Vulnerability

  • 23rd July 2026
A security vulnerability has been identified in Microsoft SharePoint, a common platform used to host team collaboration hubs, internal business tools, and public-facing content sites for organizations.The flaw is a deserialization of untrusted data issue, which means the software does not properly validate that data it processes is safe. This gap ...
Continue reading

Check Point SmartConsole: Check Point SmartConsole Improper Authentication Vulnerability

  • 23rd July 2026
A security flaw has been identified in Check Point SmartConsole, a tool commonly used to manage network and security settings for websites and online services. The issue is an improper authentication vulnerability, meaning the tool fails to properly verify that a user attempting to log in is authorized to access it.This flaw could allow an ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 23rd July 2026
On July 20 2026, Malaysia’s national cybersecurity agency MyCERT released an advisory warning that attackers are currently actively exploiting security flaws in Microsoft SharePoint, a common tool businesses use for document storage, team collaboration, and internal company websites or portals. If your business uses SharePoint to host sensitive ...
Continue reading