On 26 July 2026, MyCERT published advisory reference MA-1479.072026 reporting recent observed increases in ransomware activity targeting online systems.Ransomware is a type of harmful software that can lock access to your website files, databases, or stored customer data, with attackers typically demanding payment to restore access. A successful ...
Continue reading
A security vulnerability has been identified in specific older versions of MariaDB, a widely used open-source database software that powers many websites to store content, user information, and other site data. The flaw only impacts MariaDB versions 3.3.18 and 3.4.8.
For sites running these affected versions with the big5 character set enabled, a ...
Continue reading
Twig is a popular tool used to build dynamic content for PHP websites, such as reusable page layouts, personalized user displays, and consistent site components, without needing to rewrite the same code repeatedly.A security flaw exists in Twig versions 3.9.0 up to 3.26.0 that impacts sites using Twig's sandbox feature, a built-in safeguard ...
Continue reading
A security vulnerability has been identified in the Arista VeloCloud Orchestrator On-Prem platform. This is an OS command injection flaw, meaning a remote attacker could send specially crafted requests to run unauthorized system commands on the affected system.If successfully exploited, this could let the attacker access restricted internal ...
Continue reading