Announcements

CVE-2026-48687 (matched: php)

  • 22nd July 2026
A security flaw has been identified in FastNetMon Community Edition, a network monitoring tool that some users install on their hosting servers, affecting all versions up to 1.2.9. The issue exists in the tool's Juniper router integration feature, which is designed to log activity from JunSource: NVD (National Vulnerability Database) — ...
Continue reading

CVE-2026-6722 (matched: php)

  • 22nd July 2026
A security flaw has been identified in specific versions of PHP, the software that powers most dynamic websites. The issue impacts PHP 8.2 versions older than 8.2.31, 8.3 versions older than 8.3.31, 8.4 versions older than 8.4.21, and 8.5 versions older than 8.5.6, and is located in PHP's SOAP extension, a feature used for certain types of web ...
Continue reading

DD-WRT DD-WRT: DD-WRT Stack-Based Buffer Overflow Vulnerability

  • 22nd July 2026
A security vulnerability has been identified in DD-WRT, a popular firmware that runs on many home and small business Wi-Fi routers. The flaw is a buffer overflow bug in the router's Universal Plug and Play (UPnP) feature, a tool that lets devices on your local network automatically discover and connect to each other for uses like streaming media ...
Continue reading

Langflow Langflow: Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability

  • 22nd July 2026
A security vulnerability has been identified in the Langflow platform. This flaw is an "inclusion of functionality from untrusted control sphere" issue, which means bad actors can trick the system into pulling in and running code from external, unvetted sources that you do not control. If you use Langflow on your hosted service, this vulnerability ...
Continue reading