A security flaw has been found in WordPress core that can be triggered when a theme or plugin installed on your site passes unscreened, untrusted user input to a specific core setting. This is a SQL injection vulnerability, a type of flaw that allows bad actors to run unauthorized commands on your site’s internal database.When combined with a ...
Continue reading
On July 20, 2026, Malaysia’s national cybersecurity agency MyCERT issued advisory MA-1471.072026 to address newly reported exploitation activity targeting Microsoft SharePoint, a widely used platform many businesses rely on for team collaboration, document sharing, and internal workflow management.The advisory outlines recommended security ...
Continue reading
A security vulnerability affects FastNetMon Community Edition versions 1.2.9 and earlier, specifically in its Juniper router integration plugin. The plugin’s logging function builds system commands using unvetted input that hasn't been checked for malicious content, which can be exploited to run unauthorized, arbitrary code on the server where ...
Continue reading
A security vulnerability has been identified in DD-WRT, a popular firmware used for network routers and similar hardware. The flaw is a stack-based buffer overflow, a type of memory error that can cause unpredictable, unstable behavior in affected devices.This issue impacts the UPnP (Universal Plug and Play) feature built into DD-WRT, a function ...
Continue reading