Announcements

Ajax.NET Professional Ajax.NET Professional: Ajax.NET Professional Deserialization of Untrusted Data Vulnerability

  • 26th August 2026
A security vulnerability has been found in the Ajax.NET Professional (AjaxPro) software, a tool some websites use to add interactive, dynamic features. The flaw allows attackers to send specially crafted data to the software, which could let them run unauthorized, harmful code on your website's hosting server. The affected version of this software ...
Continue reading

MA-1471.072026: MyCERT Advisory - Microsoft SharePoint Hardening After New Exploitations

  • 26th August 2026
MyCERT released a security advisory on 20 July 2026 warning of new, active exploit attempts targeting Microsoft SharePoint, a common platform used to build business websites, team collaboration portals, and document management systems. These exploits take advantage of unpatched or poorly configured SharePoint instances to gain unauthorized access ...
Continue reading

MA-1472.072026: MyCERT Advisory - Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability

  • 26th August 2026
A security advisory (reference MA-1472.072026) was published on July 22, 2026, for a vulnerability in Microsoft Active Directory Federation Services (AD FS), a tool many organizations use to manage user logins and access permissions for web services, including hosted websites and accounts that rely on Microsoft identity systems. The vulnerability ...
Continue reading

MA-1473.072026: MyCERT Advisory - Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

  • 26th August 2026
A MyCERT security advisory released on July 22, 2026, flags a vulnerability in Microsoft SharePoint Server. The issue involves a critical function within the software that fails to require proper user authentication to access. If your website or internal business tools run on Microsoft SharePoint Server, this gap could allow unauthorized ...
Continue reading