Announcements

MA-1475.072026: MyCERT Advisory - Oracle E-Business Suite Improper Privilege Management Vulnerability

  • 22nd July 2026
A security advisory published by MyCERT on July 22, 2026 highlights a vulnerability in Oracle E-Business Suite caused by improper privilege management. This flaw means the software fails to correctly restrict access to specific features and data based on assigned user roles, potentially allowing unauthorized users to access parts of the system ...
Continue reading

CVE-2026-60363 (matched: apache http server)

  • 22nd July 2026
A serious security flaw has been identified in the Oracle HTTP Server, part of Oracle Fusion Middleware, specifically within its Apache Plugin component. The affected versions of this software are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability is very easy to exploit: an attacker does not need any login credentials, only network access to the ...
Continue reading

CVE-2026-48687 (matched: php)

  • 22nd July 2026
A security flaw has been identified in FastNetMon Community Edition, a network monitoring tool that some users install on their hosting servers, affecting all versions up to 1.2.9. The issue exists in the tool's Juniper router integration feature, which is designed to log activity from JunSource: NVD (National Vulnerability Database) — ...
Continue reading

CVE-2026-6722 (matched: php)

  • 22nd July 2026
A security flaw has been identified in specific versions of PHP, the software that powers most dynamic websites. The issue impacts PHP 8.2 versions older than 8.2.31, 8.3 versions older than 8.3.31, 8.4 versions older than 8.4.21, and 8.5 versions older than 8.5.6, and is located in PHP's SOAP extension, a feature used for certain types of web ...
Continue reading