Articles
Newsflash
11 Aug 2026 Business and Enterprise Solutions
Joomla: Reflected XSS vulnerability in Phoca Commander

In Phoca Commander component for Joomla versions 6.1.1 and earlier a medium severity vulnerability CVE-2026-65764 was detected. This vulnerability allows attackers to execute arbitrary scripts in the user’s browser. To address this issue, users should upgrade Phoca Commander to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65764.

Read more
CMS
11 Aug 2026 Business and Enterprise Solutions
Joomla: Path Traversal in Phoca Commander

In Phoca Commander component for Joomla versions 6.1.1 and earlier a medium severity vulnerability CVE-2026-65765 was detected. This vulnerability allows attackers to access unauthorized files on the server. To address this issue, users should upgrade Phoca Commander to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65765.

Read more
CMS
11 Aug 2026 Business and Enterprise Solutions
Joomla: Unauthenticated SQL injection in SP Page Builder

In the SP Page Builder component for Joomla versions before 6.7.1 a critical severity vulnerability CVE-2026-65766 was detected. This vulnerability allows attackers to perform an SQL injection. To address this issue, users should upgrade SP Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65766.

Read more
CMS
11 Aug 2026 Business and Enterprise Solutions
Joomla: Authenticated SQL injection in SP Page Builder

In SP Page Builder component for Joomla versions prior to 6.7.1 a high severity vulnerability CVE-2026-65877 was detected. This vulnerability allows an authenticated attacker to execute arbitrary SQL commands on the database. To address this issue, users should upgrade SP Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-65877.

Read more
CMS
10 Aug 2026 Business and Enterprise Solutions
WordPress: Authentication Bypass in SAML Single Sign On – SSO Login

In SAML Single Sign On – SSO Login component for WordPress versions up to and including 5.4.4 a critical severity vulnerability CVE-2026-15981 was detected. This vulnerability allows attackers to bypass authentication. To address this issue, users should upgrade SAML Single Sign On – SSO Login to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15981.

Read more
CMS
10 Aug 2026 Data Management and Analytics
MongoDB: Information Disclosure Vulnerability

In MongoDB versions prior to 7.0.39 a medium severity vulnerability CVE-2026-13066 was detected. This vulnerability allows for the disclosure of internal process memory contents. To address this issue, users should upgrade MongoDB to version 7.0.39 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-13066.

Read more
Database
Case Studies