A security flaw has been identified in the AI Copilot – Content Generator plugin for WordPress, affecting all versions up to and including 1.5.6. The plugin fails to properly verify that a user is authorized to perform certain actions, which lets unauthenticated attackers (people not logged into your site) create a new full administrator-level ...
Continue reading
A security vulnerability has been identified in Progress LoadMaster, a tool used to distribute web traffic across servers to keep websites running reliably. This flaw is a command injection issue, meaning attackers can exploit unsanitized input sent to multiple command endpoints of the LoadMaster system to trigger unintended actions.This ...
Continue reading
On July 20, 2026, cybersecurity authority MyCERT released an advisory responding to new active exploits targeting Microsoft SharePoint, with guidance for securing SharePoint instances against these emerging threats.If your website or business collaboration tools use Microsoft SharePoint, these exploits could let attackers access your stored data, ...
Continue reading
MyCERT has published security advisory MA-1472.072026 as of July 22, 2026, 1:26pm, detailing a vulnerability found in Microsoft Active Directory Federation Services (AD FS).
The reported flaw is that the service’s access controls lack sufficient granularity, meaning permissions are not set precisely enough to limit user access to only the ...
Continue reading