Announcements

MA-1474.072026: MyCERT Advisory - Critical Vulnerability in Zoom Products

  • 24th July 2026
On July 22, 2026, Malaysia’s national cybersecurity agency MyCERT issued a critical security advisory for a serious vulnerability found in Zoom’s products. Zoom is widely used by website owners for tasks tied to their online operations, including customer support calls, team meetings about site management, and embedded video features on web ...
Continue reading

MA-1475.072026: MyCERT Advisory - Oracle E-Business Suite Improper Privilege Management Vulnerability

  • 24th July 2026
A security advisory from MyCERT (reference number MA-1475.072026), published on July 22, 2026, has flagged a vulnerability in Oracle E-Business Suite, a software platform. The issue is categorized as an improper privilege management flaw. This means there is a potential for the system to grant users access to restricted features, sensitive data, ...
Continue reading

CVE-2026-60363 (matched: apache http server)

  • 24th July 2026
A serious security vulnerability has been found in the Apache Plugin component of Oracle HTTP Server, part of Oracle Fusion Middleware. The only confirmed affected versions are 12.2.1.4.0 and 14.1.2.0.0.This flaw is very easy for attackers to exploit, and does not require any login credentials or prior access to your server. Any unauthenticated ...
Continue reading

CVE-2026-8711 (matched: nginx)

  • 24th July 2026
A vulnerability affects the NGINX JavaScript feature, but only for setups that use the js_fetch_proxy setting with user-controlled NGINX variables (these include variables tied to visitor-provided data like HTTP headers, URL arguments, or cookies) and have website locations that use the ngx.fetch() operation from NGINX JavaScript.Unauthenticated ...
Continue reading