Articles
Newsflash
6 Aug 2026 Business and Enterprise Solutions
Joomla: Unauthenticated path traversal and file read in Quix Page Builder

In the Quix Page Builder component for Joomla versions prior to 6.2.1 a high severity vulnerability CVE-2026-60027 was detected. This vulnerability allows unauthenticated users to read arbitrary files via path traversal. To address this issue, users should upgrade Quix Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-60027.

Read more
CMS
6 Aug 2026 Business and Enterprise Solutions
Joomla: Authenticated stored XSS in Quix Page Builder

In Quix Page Builder component for Joomla versions 6.2.1 and earlier a medium severity vulnerability CVE-2026-60029 was detected. This vulnerability allows authenticated users to perform a stored cross-site scripting (XSS) attack. To address this issue, users should upgrade Quix Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-60029.

Read more
CMS
6 Aug 2026 Business and Enterprise Solutions
Joomla: Broken Access Control in Quix Page Builder

In Quix Page Builder component for Joomla versions before 6.2.1 a high severity vulnerability CVE-2026-60030 was detected. This vulnerability allows authenticated users to upload media files regardless of their media management permissions. To address this issue, users should upgrade Quix Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-60030.

Read more
CMS
5 Aug 2026 Communication and Collaboration
EGroupware: Remote Code Execution Vulnerability

In EGroupware affected versions a high severity vulnerability CVE-2026-27823 was detected. This vulnerability allows an authenticated attacker to execute arbitrary commands on the server. To address this issue, users should upgrade EGroupware to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-27823.

Read more
Communication
5 Aug 2026 Infrastructure and Network
Wazuh: Remote Code Execution Vulnerability

In Wazuh versions prior to 4.14.5 a high severity vulnerability CVE-2026-28220 was detected. This vulnerability allows an authenticated actor to execute arbitrary code on the master node. To address this issue, users should upgrade Wazuh to version 4.14.5 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-28220.

Read more
Security
5 Aug 2026 Business and Enterprise Solutions
Joomla: Authenticated PHP code execution in Quix Page Builder

In Quix Page Builder component for Joomla versions 6.2.1 and earlier a high severity vulnerability CVE-2026-60026 was detected. This vulnerability allows an authenticated user to execute arbitrary PHP code. To address this issue, users should upgrade Quix Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-60026.

Read more
CMS
Case Studies