Announcements

CVE-2026-44172 (matched: mariadb)

  • 28th July 2026
A security flaw tracked as CVE-2026-44172 has been identified in specific versions of MariaDB, a community-developed fork of the popular MySQL database software that many websites use to store content, user account information, and other site data. The issue impacts MariaDB versions 3.3.18 and 3.4.8. In these versions, a standard built-in security ...
Continue reading

Arista VeloCloud Orchestrator: Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability

  • 28th July 2026
A security vulnerability has been identified in the Arista VeloCloud On-Prem Orchestrator, a tool used to manage network and hosted service resources. The flaw is an operating system command injection issue, which allows a remote attacker to send specially crafted input to run unauthorized commands on the system hosting the orchestrator.If ...
Continue reading

Fortinet FortiOS: Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability

  • 28th July 2026
A security vulnerability has been identified in Fortinet FortiOS, a network security platform. This flaw creates a risk of sensitive information being exposed to people who are not authorized to access it.To exploit this issue, an attacker would first need to have already gained unauthorized low-level access to the affected system’s files via a ...
Continue reading