Announcements

CVE-2026-17544 (matched: php)

  • 5th August 2026
A security vulnerability has been identified in specific recent versions of PHP, the programming language that powers most dynamic, interactive websites. The flaw exists in the bccomp() function, which is used to compare high-precision decimal numbers, a feature commonly used for tasks like pricing calculations, financial tools, or inventory ...
Continue reading

CVE-2026-17543 (matched: php)

  • 5th August 2026
A security flaw has been identified in specific versions of PHP, the software that powers most dynamic, interactive websites. The issue affects PHP 8.2 versions older than 8.2.33, 8.3 versions older than 8.3.33, 8.4 versions older than 8.4.24, and 8.5 versions older than 8.5.9. It is caused by improper handling of backslashes in input submitted by ...
Continue reading

CVE-2026-65883 (matched: php)

  • 5th August 2026
This security notice is for owners of Joomla websites that use the Aimy Captcha-Less Form Guard extension (versions 18.0 to 20.0) from aimy-extensions.com. A flaw exists in these specific extension versions: attackers can exploit it by sending a specially crafted entry to the "clfgd" field on forms powered by this tool.If this flaw is exploited, ...
Continue reading

N-able N-central: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability

  • 5th August 2026
A security vulnerability has been found in N-able N-central, a remote management tool many organizations use to oversee their servers, websites, and IT systems. The flaw lets attackers bypass the platform’s normal login requirements, which could allow them to take over user accounts linked to N-central.This issue exists because an earlier patch ...
Continue reading