Announcements

CVE-2026-14526 (matched: wordpress)

  • 9th August 2026
A security flaw has been identified in the AI Copilot – Content Generator plugin for WordPress, affecting all versions up to and including 1.5.6. The plugin fails to properly verify that a user is authorized to perform certain actions, which lets unauthenticated attackers (people not logged into your site) create a new full administrator-level ...
Continue reading

Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • 9th August 2026
A security vulnerability has been identified in Progress LoadMaster, a tool used to distribute web traffic across servers to keep websites running reliably. This flaw is a command injection issue, meaning attackers can exploit unsanitized input sent to multiple command endpoints of the LoadMaster system to trigger unintended actions.This ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 9th August 2026
On July 20, 2026, cybersecurity authority MyCERT released an advisory responding to new active exploits targeting Microsoft SharePoint, with guidance for securing SharePoint instances against these emerging threats.If your website or business collaboration tools use Microsoft SharePoint, these exploits could let attackers access your stored data, ...
Continue reading