Announcements

CVE-2026-44170 (matched: mariadb)

  • 3rd August 2026
A security flaw has been identified in MariaDB, a common open-source database software many websites use to store data. This issue only impacts MariaDB installations running on Windows servers that have the CONNECT engine enabled with REST support turned on. The vulnerability occurs because unvetted input from HTTP table settings is passed ...
Continue reading

CVE-2026-49261 (matched: mariadb)

  • 3rd August 2026
A security flaw has been identified in specific versions of MariaDB, a common open-source database tool many websites use to store content, user data, and other information. The issue only affects MariaDB versions 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8.1 through 11.8.7, and 12.3.1, and only if a setting ...
Continue reading

CVE-2026-64827 (matched: php)

  • 3rd August 2026
A security flaw has been identified in older versions of Telenia Software TVox: all 26.x releases up to version 26.5.3, and all 24.x releases up to version 24.9.21. This flaw creates an authentication bypass, meaning unauthorized users can access protected sections of the service without entering valid login credentials.The issue exists in a file ...
Continue reading

CVE-2026-8457 (matched: wordpress)

  • 3rd August 2026
A security flaw has been found in the WooCommerce Social Login plugin for WordPress, affecting all versions up to and including 2.8.7. The issue is in the plugin's Apple login feature, which does not properly check if login tokens from Apple are legitimate, and also exposes a required security code for the login process to anyone who visits your ...
Continue reading