Announcements

Ajax.NET Professional Ajax.NET Professional: Ajax.NET Professional Deserialization of Untrusted Data Vulnerability

  • 27th August 2026
If your website uses the Ajax.NET Professional (often shortened to AjaxPro) software library, there is a known security flaw in this product you should be aware of. The issue stems from how the software processes untrusted data it receives: attackers could exploit this weakness to run unauthorized, harmful code on the server hosting your website, ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 27th August 2026
On July 20 2026, cybersecurity agency MyCERT released a security advisory focused on Microsoft SharePoint, a tool many businesses use for internal team collaboration, document storage, and shared workspaces. The advisory was prompted by newly identified methods that bad actors could use to exploit weaknesses in SharePoint. For clients who use ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 27th August 2026
A security advisory was published on July 22, 2026, by cybersecurity agency MyCERT, outlining a vulnerability in Microsoft’s Active Directory Federation Services (ADFS). ADFS is a widely used tool that manages user identity verification, single sign-on access, and secure connections between websites and other business services.The vulnerability ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 27th August 2026
On July 22, 2026, a cybersecurity advisory was released identifying a security flaw in Microsoft SharePoint Server, a platform many organizations use to host internal team sites, store shared documents, and support workplace collaboration. This notice only applies to users who operate their own SharePoint Server instances.The vulnerability is a ...
Continue reading