Announcements

Microsoft SharePoint: Microsoft SharePoint Weak Authentication Vulnerability

  • 21st August 2026
A security vulnerability has been identified in Microsoft SharePoint, a popular platform many organizations use to store shared documents, run internal team collaboration spaces, and host other business content. The flaw is a weak authentication issue.This weakness allows an unauthorized person to bypass a built-in security measure if they have ...
Continue reading

Broadcom VMware vCenter: Broadcom VMware vCenter Path Traversal Vulnerability

  • 21st August 2026
A security vulnerability has been identified in Broadcom VMware vCenter, a platform many organizations use to manage the virtual server infrastructure that runs their websites and applications. This flaw is classified as a path traversal vulnerability, a type of security gap that lets users bypass normal system access controls. If a threat actor ...
Continue reading

Microsoft Internet Key Exchange (IKE) Service Extensions: Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability

  • 21st August 2026
A security flaw has been discovered in Microsoft's Internet Key Exchange (IKE) Service Extensions, a component that supports secure network connections for Windows systems. This flaw is categorized as a "double free" vulnerability, a type of software error that can trigger unexpected, unsafe behavior in the affected service.This vulnerability can ...
Continue reading

MLflow MLflow: MLflow Server-Side Request Forgery Vulnerability

  • 21st August 2026
A security vulnerability has been found in MLflow, a tool some website and application owners use on their hosting accounts to manage machine learning projects. The issue is a type of flaw called server-side request forgery. If attackers exploit this flaw, they can send requests from your MLflow setup to internal services on your hosting account, ...
Continue reading