MariaDB is a popular open-source database tool that many websites use to store important information like user accounts, site content, and order records. A security flaw has been found in specific MariaDB versions: if a setting called `wsrep_notify_cmd` is turned on, the database will automatically run any hidden commands that are embedded in the ...
Continue reading
A security vulnerability affects Ninja Tables Pro version 5.2.11, caused by a tampered, malicious version of the plugin that was distributed through the tool's decommissioned official update server.When this altered plugin is installed, it runs hidden harmful code. It creates a secret backdoor that lets unauthorized users access your site ...
Continue reading
A compromised version of the popular WordPress form plugin Fluent Forms Pro, specifically version 6.2.7, contains hidden harmful code that was added to a tampered build of the plugin distributed through a decommissioned official update server.
The hidden code creates a secret backdoor that lets attackers access your site, drops persistent hidden ...
Continue reading
A security flaw has been identified in AlanWeb SCADA, a software platform some website owners use for managing industrial control systems and related data. The flaw means the software does not properly enforce access restrictions for certain folders on systems running it, leaving those folders unprotected.
An attacker without authorized access to ...
Continue reading