Announcements

CVE-2026-18315 (matched: wordpress)

  • 20th August 2026
A security vulnerability has been discovered in the TrueBooker – Appointment Booking and Scheduler System plugin for WordPress. All versions of this plugin up to and including version 1.2.6 are impacted by this flaw.The issue allows unauthenticated attackers (people who do not have a valid login for your site) to bypass the plugin's access ...
Continue reading

Ray-Project Ray: Ray-Project Ray Code Injection Vulnerability

  • 20th August 2026
A security vulnerability has been identified in Ray, a development tool created by Ray Project. This is a code injection flaw, which could allow unauthorized parties to run malicious code remotely on systems that use the tool.Developers who use Ray as part of their workflow may be exposed to this risk. The vulnerability can be exploited when ...
Continue reading

Apple macOS: Apple macOS Improper Authentication Vulnerability

  • 20th August 2026
A security flaw has been identified in Apple's macOS operating system. The issue is an improper authentication vulnerability that affects the system's built-in Screen Sharing feature.This vulnerability could allow an attacker who is connected to the same network as your macOS device to access your Screen Sharing session without needing to enter ...
Continue reading

Microsoft SharePoint: Microsoft SharePoint Weak Authentication Vulnerability

  • 20th August 2026
A security flaw has been identified in Microsoft SharePoint, a platform many organizations use for shared document storage, team collaboration, and internal site management. The issue is a weak authentication vulnerability, meaning the process SharePoint uses to confirm users are authorized to access the platform has a built-in gap.This gap could ...
Continue reading