Announcements

WordPress Core: WordPress Core SQL Injection Vulnerability

  • 24th July 2026
A security flaw has been identified in the core WordPress software, known as a SQL injection vulnerability. This type of bug lets attackers interfere with how your site interacts with its database, and it is triggered when a plugin or theme you have installed sends unvetted user input to a vulnerable parameter in WordPress core.This flaw can be ...
Continue reading

Microsoft SharePoint: Microsoft SharePoint Deserialization of Untrusted Data Vulnerability

  • 24th July 2026
A security flaw has been discovered in Microsoft SharePoint, the popular platform many businesses use for team collaboration, document sharing, and internal worksites. This issue stems from how SharePoint processes specially crafted, untrusted data sent to the system. If exploited, an unauthorized attacker could run harmful code on the affected ...
Continue reading

Check Point SmartConsole: Check Point SmartConsole Improper Authentication Vulnerability

  • 24th July 2026
A security vulnerability has been found in Check Point SmartConsole, a tool used to manage network and security settings for web services and hosted systems. The flaw is an improper authentication issue, meaning the tool does not properly verify user identities before granting access to its controls.If this flaw is exploited, an unauthenticated ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 24th July 2026
On July 20, 2026, Malaysia’s cybersecurity authority MyCERT released a security advisory for Microsoft SharePoint, a common platform many businesses use to host shared documents, team workspaces, and collaborative content on their websites. The advisory focuses on hardening, or improving the security of, SharePoint systems. The alert was issued ...
Continue reading