In Apache ActiveMQ versions before 5.19.9, a high severity vulnerability CVE-2026-59878 was detected. This vulnerability allows a remote unauthenticated attacker to cause a denial-of-service. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59878.
Read more Developer ToolsIn Apache Tomcat versions 11.0.0-M20 through 11.0.24, 10.1.24 through 10.1.57, and 9.0.89 through 9.0.120 a high severity vulnerability CVE-2026-66299 was detected. This vulnerability allows attackers to cause uncontrolled resource consumption. To address this issue, users should upgrade Apache Tomcat to version 9.0.121 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-66299.
Read more Application DevelopmentIn Apache ActiveMQ versions before 5.19.9 a medium severity vulnerability CVE-2026-61487 was detected. This vulnerability allows an authenticated low-privilege user to bypass write permissions for message queues. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-61487.
Read more Developer ToolsIn certain versions of Node a medium severity vulnerability CVE-2026-66922 was detected. This vulnerability allows an attacker to tamper with object prototypes, potentially leading to denial of service or other security bypasses. To address this issue, users should upgrade Node to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-66922.
Read more Developer ToolsIn Mattermost versions 11.8.0 and earlier, 11.7.3 and earlier, 11.6.5 and earlier, and 10.11.20 and earlier a medium severity vulnerability CVE-2026-7521 was detected. This vulnerability allows an administrator to delete arbitrary files on the server. To address this issue, users should upgrade Mattermost to version 10.11.21 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-7521.
Read more CommunicationIn SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery component for WordPress versions 3.9.7 and earlier a critical severity vulnerability CVE-2026-15014 was detected. This vulnerability allows an attacker to take over user accounts. To address this issue, users should upgrade SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15014.
Read more CMSIn Phoca Commander component for Joomla versions 6.1.1 and earlier a medium severity vulnerability CVE-2026-65764 was detected. This vulnerability allows attackers to execute arbitrary scripts in the user’s browser. To address this issue, users should upgrade Phoca Commander to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65764.
Read more CMSIn Phoca Commander component for Joomla versions 6.1.1 and earlier a medium severity vulnerability CVE-2026-65765 was detected. This vulnerability allows attackers to access unauthorized files on the server. To address this issue, users should upgrade Phoca Commander to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65765.
Read more CMSIn the SP Page Builder component for Joomla versions before 6.7.1 a critical severity vulnerability CVE-2026-65766 was detected. This vulnerability allows attackers to perform an SQL injection. To address this issue, users should upgrade SP Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65766.
Read more CMS