Announcements

Langflow Langflow: Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability

  • 24th July 2026
We are alerting you to a security vulnerability affecting Langflow, a low-code tool some hosting clients use to build and manage applications on their accounts. This issue is an inclusion of functionality from an untrusted control sphere flaw, which allows anyone with internet access to run unauthorized, unapproved code on systems where vulnerable ...
Continue reading

WordPress Core: WordPress Core Interpretation Conflict Vulnerability

  • 24th July 2026
A security flaw has been found in the core WordPress software, the platform that powers most websites hosted on our service. This issue, called an interpretation conflict vulnerability, could let a malicious actor use a method called SQL injection to access or change data in your site’s database, and in some cases take full remote control of ...
Continue reading

WordPress Core: WordPress Core SQL Injection Vulnerability

  • 24th July 2026
There is a security vulnerability in standard WordPress core software. This is a type of input handling flaw (called a SQL injection vulnerability) that occurs when a plugin or theme installed on your WordPress site sends unvetted, untrusted data to a specific system parameter.This vulnerability can be chained with a separate, known WordPress ...
Continue reading

Microsoft SharePoint: Microsoft SharePoint Deserialization of Untrusted Data Vulnerability

  • 24th July 2026

Microsoft SharePoint contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2026-50522

Continue reading