Announcements

MA-1478.072026: MyCERT Advisory - Multiple Vulnerability in Fortinet Products

  • 22nd August 2026
On 26 July 2026 at 3:31pm, Malaysia’s national cybersecurity agency MyCERT released advisory MA-1478.072026, confirming multiple security vulnerabilities have been identified in products made by Fortinet, a common provider of cybersecurity and networking tools used by many website and business owners to protect their online operations. If you ...
Continue reading

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 22nd August 2026
A security advisory from MyCERT, published on July 26, 2026, confirms that recent ransomware activity has been observed across connected systems, including those used to host and manage websites. Ransomware is a type of harmful software that can lock or scramble access to your website’s files, data, and core functionality, often taking the site ...
Continue reading

CVE-2026-78003 (matched: wordpress)

  • 22nd August 2026
A security vulnerability identified as CVE-2026-78003 impacts the Mailgun for WordPress plugin, affecting all versions up to and including 2.2.0. The flaw occurs because the plugin does not properly check user-provided input when handling address lists, letting unauthenticated attackers send requests using your site's private Mailgun API key ...
Continue reading

MLflow MLflow: MLflow Server-Side Request Forgery Vulnerability

  • 22nd August 2026
A security vulnerability has been found in MLflow, a common tool for managing machine learning projects on hosted servers. This is a server-side request forgery (SSRF) flaw, a type of issue that lets external attackers send unauthorized requests through the affected service.When exploited, this vulnerability allows bad actors to trick MLflow into ...
Continue reading