Announcements

CVE-2026-19598 (matched: php)

  • 16th August 2026
A security vulnerability has been found in the Pods – Custom Content Types and Fields plugin for WordPress, a popular tool that many site owners use to add custom content types and field features to their websites. The flaw affects all versions of the plugin up to and including 3.3.9.The vulnerability works by bypassing all of the plugin’s ...
Continue reading

CVE-2026-73533 (matched: php)

  • 16th August 2026
A security issue has been found in version 5.2.11 of Ninja Tables Pro, a popular WordPress plugin many website owners use to build and manage data tables on their sites. The flaw comes from a tampered, malicious version of the plugin that was distributed through an old, decommissioned update server for the tool.This malicious version of the plugin ...
Continue reading

CVE-2026-34184 (matched: php)

  • 16th August 2026
A security vulnerability has been identified in AlanWeb SCADA, a software platform some website and operational system operators may use. The flaw means the software does not properly enforce access restrictions for certain system directories.This gap allows unauthorized attackers to read all files stored in these unprotected directories, and even ...
Continue reading

CVE-2026-18855 (matched: wordpress)

  • 16th August 2026
This notice covers a security flaw in the Link Library plugin for WordPress, a tool many site owners use to organize and display collections of links on their websites. The issue impacts all versions of the plugin up to and including 7.9.4, and could let people who do not have login access to your site delete files stored on your website’s ...
Continue reading