Announcements

CVE-2026-44170 (matched: mariadb)

  • 4th August 2026
A security flaw has been identified in specific versions of MariaDB, a widely used open-source database tool that many websites rely on to store content, user information, and other data. The issue only impacts MariaDB installations running on Windows servers that have the CONNECT engine and REST support feature enabled. The flaw occurs when ...
Continue reading

CVE-2026-49261 (matched: mariadb)

  • 4th August 2026
MariaDB is a popular open-source database used to store data for many websites, and a security flaw has been found in specific versions of the software. When a feature called wsrep_notify_cmd is enabled, the system will automatically run any shell commands hidden in the name of a node that joins your database cluster. This could allow an ...
Continue reading

CVE-2026-39932 (matched: php)

  • 4th August 2026
A critical security flaw has been found in OpenEMR, a common open-source electronic medical records platform, affecting all versions up to 8.2.0. The issue exists in the part of the software that manages document category trees, and it allows people with administrator access to the OpenEMR site to run harmful, unauthorized commands on the server ...
Continue reading

N-able N-central: N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability

  • 4th August 2026
A security flaw has been found in N-able N-central, a platform many organizations use to manage their servers and IT systems. This flaw lets attackers bypass the platform’s normal login requirements, which could allow them to access user accounts without permission and take full control of those accounts.The vulnerability exists because an ...
Continue reading