Announcements

CVE-2021-40438 (matched: apache http server)

  • 9th August 2026
A security flaw has been identified in Apache HTTP Server, the common software that powers a large number of websites. This issue impacts version 2.4.48 and all older releases of the software.The flaw is triggered when someone sends a specially crafted request to a site running the affected version. It impacts the server's mod_proxy feature, which ...
Continue reading

CVE-2026-14526 (matched: wordpress)

  • 9th August 2026
A security flaw has been found in the "AI Copilot – Content Generator" plugin for WordPress, impacting all versions up to and including 1.5.6. The plugin does not properly verify that a user is authorized to carry out sensitive actions, which allows unauthenticated attackers (people who do not have a login for your site) to take full control of ...
Continue reading

Progress LoadMaster: Progress LoadMaster Command Injection Vulnerability

  • 9th August 2026
A security vulnerability has been identified in Progress LoadMaster, a tool used to manage and distribute traffic to websites. This flaw is a command injection issue, meaning unsanitized input passed to multiple command features of the tool can be exploited by unauthorized parties.This vulnerability does not require attackers to hold any login ...
Continue reading

WordPress 7.0.3 release

  • 9th August 2026
A new security-focused update for WordPress, version 7.0.3, is now available. This release includes fixes for multiple security vulnerabilities that could put your website at risk if left unpatched.The WordPress team recommends updating your site to this new version as soon as possible to address these security gaps.If you run a WordPress site, ...
Continue reading