Announcements

Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • 10th August 2026
A security vulnerability has been identified in Progress LoadMaster, a tool some website operators use to balance traffic across their sites to maintain reliable, consistent service for visitors. This flaw is a command injection issue, meaning an attacker does not need valid login credentials for the system to exploit it. By targeting unsanitized ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 10th August 2026
A MyCERT security advisory (reference MA-1471.072026) published on 20 July 2026 has been issued to alert users to new, active exploits targeting Microsoft SharePoint, a common tool used by businesses for team collaboration, document sharing, and internal content management. These active exploits target unpatched or improperly configured SharePoint ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 10th August 2026
A security advisory released by MyCERT on 22 July 2026 outlines a vulnerability in Microsoft Active Directory Federation Services (AD FS). The issue is classified as an insufficient granularity of access control flaw, which means the service does not apply narrow, specific permission rules to limit access to its features and associated protected ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 10th August 2026
A security vulnerability affecting Microsoft SharePoint Server was publicly disclosed on 22 July 2026. SharePoint Server is a tool many organizations use to host, share, and manage internal business documents and team collaboration resources. The flaw is described as a missing authentication issue for a critical server function, meaning a key ...
Continue reading