A security flaw has been identified in specific versions of PHP, the software that powers many dynamic websites. The issue affects the component PHP uses to connect to Firebird databases, called the PDO Firebird driver.When this component builds SQL database queries, it fails to handle a special character type (called a NUL byte) correctly. This ...
Continue reading
A security vulnerability tracked as CVE-2026-34084 has been found in PhpSpreadsheet, a popular library that many websites use to read, write, and process spreadsheet files like Excel or CSV exports. The flaw impacts multiple older versions of this tool.
This issue only affects websites that both use PhpSpreadsheet and allow user-submitted input ...
Continue reading
A new security advisory from MyCERT, published July 20, 2026 at 9:43am, outlines recommended hardening steps for Microsoft SharePoint following recent reported exploitations of the platform.
Microsoft SharePoint is a widely used business tool that lets teams store and share files, collaborate on projects, and host internal company portals. The ...
Continue reading
On 22 July 2026, a security advisory was issued for a vulnerability found in Microsoft Active Directory Federation Services (AD FS), a tool many organizations use to manage who can access their business applications and online services.The issue is that this service’s access control settings are not fine-tuned enough, meaning permissions may not ...
Continue reading