Announcements

CVE-2026-14526 (matched: wordpress)

  • 9th August 2026
A security vulnerability tracked as CVE-2026-14526 affects the AI Copilot – Content Generator plugin for WordPress, impacting all versions up to and including 1.5.6. The plugin does not properly verify that a user is authorized to perform actions within it, creating an authorization bypass flaw.This flaw makes it possible for unauthenticated ...
Continue reading

Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • 9th August 2026
A security flaw has been identified in Progress LoadMaster, a tool used to balance web traffic and keep online services available. This is a command injection vulnerability: unsafe, unscreened input sent to multiple command-handling parts of the tool can be exploited by attackers.The flaw is especially serious because no login or access ...
Continue reading

WordPress 7.0.3 release

  • 9th August 2026
WordPress has released a new security-focused update, version 7.0.3, that patches multiple known security issues for sites running the WordPress platform. These fixes address vulnerabilities that could be exploited to access, damage, or compromise your site and its visitor data.Because this is a dedicated security release, it is strongly ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 9th August 2026
On July 20 2026, cybersecurity advisory body MyCERT released a notice focused on Microsoft SharePoint, following reports of new exploitation activity targeting the platform. If your website, business content hubs, or internal tools run on Microsoft SharePoint, these new exploits could allow bad actors to gain unauthorized access to your data, ...
Continue reading