A security vulnerability has been discovered in Metabase, a popular tool many websites use to query, visualize, and report on their data. This flaw allows unauthenticated (meaning no login is required) remote attackers to send malicious, unauthorized commands directly to the database that powers your Metabase instance.If exploited, this ...
Continue reading
A security flaw has been identified in the Windows Ancillary Function Driver for WinSock, a core Windows component that manages network-related functions for applications running on your system. The issue is a use-after-free vulnerability, which occurs when a program attempts to access a block of memory it has already released for other system ...
Continue reading
A security vulnerability has been found in Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) firewall devices. This flaw relates to how the device checks its internal memory, and can be exploited by an unauthorized remote user who does not need any login access to the device.If triggered, the ...
Continue reading
A cybersecurity advisory from Malaysia’s national cybersecurity response team (MyCERT) was published on 20 July 2026, focused on securing Microsoft SharePoint following the discovery of new exploitation methods targeting the platform. SharePoint is a widely used tool for businesses to store and share files, collaborate on team projects, and ...
Continue reading