Articles

prestashop-cve-cover-en
News Updated today

Perfect-10 unauthenticated takeover in PrestaShop's search module: CVE-2026-54159 — update ps_facetedsearch to 4.0.4

SecurityDevelopment
2026.07.183 views
wordpress-core-cve-cover-en
News Updated today

Two site-takeover flaws in WordPress core: CVE-2026-60137 and CVE-2026-63030 — update now

DevelopmentSecurity
2026.07.189 views
cursor-cve-cover-en
News Updated today

Just opening a repo in Cursor can hijack a Windows PC: CVE-2026-63093, and there's still no official fix

DevelopmentAISecurity
2026.07.182 views
openclaw-cve-cover-en
News Updated today

Takeover-enabling flaws in the popular self-hosted AI agent OpenClaw, plus no-login impersonation in its checker: CVE-2026-62241 and 9 more — update now

AISecurity
2026.07.171 views
zoom-windows-cve-cover-en
News Updated yesterday

Account-takeover flaw in Zoom's Windows apps, no login or interaction needed: CVE-2026-53412 — update to the latest version

Global CompaniesSecurity
2026.07.171 views
docling-cve-cover-en
News Updated yesterday

Document-to-AI tool Docling hit by a string of flaws: crafted documents or URLs can leak internal information — CVE-2026-44023 and 7 more, update now

AISecurity
2026.07.172 views
wg-easy-cve-cover-en
News Updated yesterday

WireGuard Easy (wg-easy) flaw lets attackers steal VPN connection details — dangerous if the admin panel is exposed: CVE-2026-63089, no stable fix released yet

SecurityInfrastructure
2026.07.171 views
grafana-oncall-cve-cover-en
News Updated yesterday

Grafana OnCall (open-source) can be fully taken over without login — and no patch is coming: CVE-2026-63087, stop using it and migrate

InfrastructureSecurity
2026.07.175 views
ubuntu-pro-client-cve-cover-en
News Updated yesterday

Critical flaw in a tool bundled with Ubuntu (CVE-2026-11386): a spoofed server could sneak in malicious software — update now

SecurityLinux
2026.07.162 views
spring-authorization-server-cve-cover-en
News Updated yesterday

Critical flaw in Spring Authorization Server (CVE-2026-22752): a crafted client registration can lead to impersonation and data theft — update to 7.0.5 / 1.5.7

SecurityDevelopment
2026.07.161 views
wordpress-plugins-2026-07-16-privilege-escalation-roundup-cover-en
News Updated yesterday

Three popular WordPress plugins hit by admin-takeover flaws, including a translation tool on 1M+ sites (CVE-2026-15005 and more) — update now (July 16, 2026)

SecurityDevelopment
2026.07.162 views
credit-card-outage-2026-07-16-cover-en
News Updated yesterday

Credit cards went down across Japan on July 16: convenience stores and Suica top-ups hit — the cause was an international card network outage

MobileJapanese CompaniesInfrastructure
2026.07.168 views
12323