Skip to main content
Main navigation
Home
About Us
News and Updates
Advisories
Report an Incident
Publications
Search
GitHub Enterprise Server Stored XSS via Markdown Rendering Allows Session Hijacking (CVE-2026-11962)
Advisories
9 July 2026
WPFunnels WooCommerce Plugin Unauthenticated Log Injection Leads to Remote Code Execution (CVE-2026-14345)
Advisories
9 July 2026
WinRAR RAR5 Heap Overflow Enables Remote Code Execution via Malicious Recovery Volume Files (CVE-2026-14191)
Advisories
7 July 2026
SimpleHelp RMM Authentication Bypass Under Active Exploitation Delivering TaskWeaver and Djinn Stealer (CVE-2026-48558)
Advisories
7 July 2026
Veeam Backup and Replication Remote Code Execution via Deserialization Allows Domain User Takeover (CVE-2026-44963)
Advisories
7 July 2026
Alerts
Have you thought about using a Password Manager?
Alerts
Beyond relying on a password alone
Alerts
Are you securely changing Phones?
Alerts
NITA-U issues 7 security tips
Alerts
Protect your social media account
Subscribe to Alerts
Recent Advisories
01
WPFunnels WooCommerce Plugin Unauthenticated Log Injection Leads to Remote Code Execution (CVE-2026-14345)
02
GitHub Enterprise Server Stored XSS via Markdown Rendering Allows Session Hijacking (CVE-2026-11962)
03
WinRAR RAR5 Heap Overflow Enables Remote Code Execution via Malicious Recovery Volume Files (CVE-2026-14191)
04
Veeam Backup and Replication Remote Code Execution via Deserialization Allows Domain User Takeover (CVE-2026-44963)
05
SimpleHelp RMM Authentication Bypass Under Active Exploitation Delivering TaskWeaver and Djinn Stealer (CVE-2026-48558)
06
EventON WordPress Plugin SQL Injection Exposes Database Contents (CVE-2026-9711)