Announcements

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 26th July 2026
A security advisory was published by MyCERT on July 22, 2026, for a vulnerability in Microsoft SharePoint Server. The issue is that a key, high-priority function in the software does not require users to prove they are authorized to access it.If you use SharePoint Server to run your website or store business data, this flaw means unapproved people ...
Continue reading

MA-1474.072026: MyCERT Advisory - Critical Vulnerability in Zoom Products

  • 26th July 2026
A public advisory from MyCERT, published on 22 July 2026 at 1:26 pm, confirms a critical security vulnerability exists in Zoom products.If you use Zoom for features like virtual events, customer support, or team communications linked to your hosted website, this flaw could potentially put your account and any data shared via the platform at risk ...
Continue reading

MA-1475.072026: MyCERT Advisory - Oracle E-Business Suite Improper Privilege Management Vulnerability

  • 26th July 2026
On July 22, 2026, MyCERT released a security advisory flagging a vulnerability in Oracle E-Business Suite described as improper privilege management. For users of this business software, this type of flaw means the system may fail to correctly restrict what different user accounts can access, edit, or do.This could potentially allow unauthorized ...
Continue reading

CVE-2026-23941 (matched: apache http server)

  • 25th July 2026
A vulnerability known as HTTP Request Smuggling has been found in Erlang OTP's inets httpd module, a component used in some web server setups. The issue comes from a mismatch in how the module handles duplicate "Content-Length" headers, which signal the length of an incoming web request's body to a server. The affected module uses the first of ...
Continue reading