Announcements

CVE-2026-14526 (matched: wordpress)

  • 9th August 2026
A security flaw has been found in the AI Copilot – Content Generator plugin for WordPress, impacting all versions up to and including 1.5.6. The issue is an authorization bypass, meaning the plugin does not properly check if a user is allowed to perform specific actions on your site.This vulnerability only affects sites that have either the ...
Continue reading

Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • 9th August 2026
A security flaw has been found in Progress LoadMaster, a load balancing tool some customers use to distribute traffic to their websites and online services. This is a command injection vulnerability. It means an attacker does not need any valid login or access credentials to run custom commands directly on the LoadMaster device, by sending ...
Continue reading

WordPress 7.0.3 release

  • 9th August 2026
WordPress has released version 7.0.3, a security-focused update that patches multiple known vulnerabilities in the platform. Leaving these vulnerabilities unaddressed could put your website at risk of compromise, so WordPress recommends applying this update immediately. You can install the update directly through your site's WordPress dashboard by ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 9th August 2026
On July 20, 2026, cybersecurity agency MyCERT released a security advisory with guidance for hardening Microsoft SharePoint, following reports of new active attacks exploiting the platform. SharePoint is a common business tool used to store and share internal documents, collaborate on team projects, and manage shared workflows. When not properly ...
Continue reading