Announcements

CVE-2026-15964 (matched: wordpress)

  • 1st August 2026
A security flaw has been identified in the Single Sign On For TNG plugin for WordPress, impacting all versions up to and including 2.0.0. This flaw allows anyone who does not have a login for your WordPress site to reset the password for any existing user on the site, including administrator accounts. If an attacker exploits this vulnerability, ...
Continue reading

CVE-2026-3141 (matched: wordpress)

  • 1st August 2026
A security flaw has been found in the FormGent plugin for WordPress, a tool some site owners use to handle form submissions and file uploads, impacting all versions up to and including 1.9.2. The issue exists because a public API endpoint the plugin uses to manage uploaded files does not require any login or verification to access, which lets ...
Continue reading

Cisco Secure Firewall Management Center (FMC): Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability

  • 1st August 2026
A security flaw has been identified in Cisco Secure Firewall Management Center, a tool many organizations use to manage Cisco firewall systems that protect their networks and hosted services. The issue stems from a password that is hard-coded, or embedded directly into the software’s code rather than being set by an administrator. An attacker ...
Continue reading

PHP 8.2.33 Released!

  • 1st August 2026
A new version of PHP, the core programming language that powers most dynamic, interactive websites, has been released: version 8.2.33. No additional details about what changes, improvements, or fixes this release includes have been shared publicly at this time. There is no confirmed action required for website owners related to this update unless ...
Continue reading