A security flaw has been identified in Apache HTTP Server, the common web server software used to power many websites, including those hosted on our platform. The issue impacts all versions of Apache HTTP Server 2.4.48 and older.The flaw exploits the server's mod_proxy feature, which is designed to forward user requests to the correct backend ...
Continue reading
A security flaw has been identified in specific older versions of MariaDB, a widely used open-source database system that many websites rely on to store content, customer data, and other critical site information.The issue affects MariaDB versions 3.3.18 and 3.4.8 when a site uses the big5 character set and text protocol for database connections. ...
Continue reading
Twig is a template tool for PHP websites that controls how your site's content and page layouts are displayed to visitors.
A security flaw exists in Twig versions 3.9.0 through 3.26.0. If your site uses Twig's sandbox security feature (designed to block untrusted custom templates from running risky code), attackers could bypass that sandbox by ...
Continue reading
A security flaw has been identified in the Single Sign On For TNG plugin for WordPress, affecting all versions of the plugin up to and including 2.0.0. This flaw allows anyone who visits your WordPress site, even if they are not logged in or have no authorized access to your site, to reset the password for any account on your site, including ...
Continue reading