A security flaw, tracked as CVE-2026-6722, has been identified in specific versions of PHP, the programming language that powers many interactive website features. The issue affects PHP’s SOAP extension, a tool used for exchanging data between different web services.
The flaw can be exploited by an attacker who can send specially crafted ...
Continue reading
A security flaw exists in specific older versions of PHP, the software used to run many dynamic websites, when the PDO Firebird database connection tool is in use. The affected versions are PHP 8.2 releases older than 8.2.31, 8.3 releases older than 8.3.31, 8.4 releases older than 8.4.21, and 8.5 releases older than 8.5.6.
The bug occurs when ...
Continue reading
PhpSpreadsheet is a popular library used by many web applications to read and write spreadsheet files, and older versions of it have a security flaw. This issue only impacts websites where users can submit the filename of a spreadsheet that the site loads using this library.If your site fits that scenario, an attacker could send a specially ...
Continue reading
A security flaw has been identified in Microsoft SharePoint, the platform many teams use to store, share, and collaborate on work files and data. This flaw stems from how SharePoint processes incoming data that it rebuilds into a usable internal format, without first properly checking that the data comes from a trusted source.If an unauthorized ...
Continue reading