Announcements

MA-1479.072026: MyCERT Advisory - Recent Ransomware Activities Observed: Best Practices for Prevention and Mitigation

  • 18th August 2026
MyCERT published an advisory on 26 July 2026 noting recent observed ransomware activity targeting organizations, including those that operate websites and online services. Ransomware is a type of malicious software that can lock up your website files, customer data, or hosting account resources. Attackers typically demand payment to restore ...
Continue reading

CVE-2019-11049 (matched: php)

  • 18th August 2026
A security vulnerability has been found in specific versions of PHP, the programming language that powers most dynamic websites. This issue impacts PHP 7.3.x versions older than 7.3.13, and PHP 7.4.0, when they are running on Windows servers. The flaw is triggered when a site uses PHP’s built-in mail() function to send emails with custom headers ...
Continue reading

CVE-2026-15748 (matched: wordpress)

  • 18th August 2026
A security vulnerability has been found in the Forminator Forms plugin for WordPress, affecting all versions up to and including 1.56.1. The flaw exists in the plugin's public form file upload feature, which fails to properly check what type of files users are trying to upload.Because of this gap, unauthenticated attackers (people who do not have ...
Continue reading

CVE-2026-18432 (matched: wordpress)

  • 18th August 2026
A security vulnerability has been found in the "Frontend Admin by DynamiApps" plugin for WordPress, which affects all versions of the plugin up to and including 3.29.9. This flaw allows unauthorized users to gain full administrator access to your WordPress site under specific conditions. If an attacker gains this level of access, they can take ...
Continue reading