Announcements

Apache Tomcat: Apache Tomcat Missing Encryption of Sensitive Data Vulnerability

  • 6th August 2026
A security vulnerability has been identified in Apache Tomcat, a common platform used to run many websites and web applications. The issue stems from sensitive data not being properly encrypted as intended. This flaw allows bad actors to bypass the EncryptInterceptor, a built-in security feature designed to protect that sensitive information. If ...
Continue reading

N-able N-central: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability

  • 6th August 2026
A security vulnerability has been identified in the N-able N-central platform, a remote management tool many organizations use to oversee networks, servers, and hosted services including websites.This flaw is an authentication bypass that works by using an alternate, unprotected access path or channel to the platform. Normally, only users with ...
Continue reading

JetBrains TeamCity: JetBrains TeamCity Deserialization of Untrusted Data Vulnerability

  • 6th August 2026
A security vulnerability has been identified in JetBrains TeamCity, a popular tool used by development teams to automate software building, testing, and deployment workflows. The flaw stems from improper handling of untrusted data the software receives from external sources. This issue could allow an unauthenticated remote attacker to run any code ...
Continue reading