Articles
Newsflash
12 Aug 2026 Communication and Collaboration
Mattermost: Arbitrary File Deletion Vulnerability

In Mattermost versions 11.8.0 and earlier, 11.7.3 and earlier, 11.6.5 and earlier, and 10.11.20 and earlier a medium severity vulnerability CVE-2026-7521 was detected. This vulnerability allows an administrator to delete arbitrary files on the server. To address this issue, users should upgrade Mattermost to version 10.11.21 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-7521.

Read more
Communication
12 Aug 2026 Business and Enterprise Solutions
WordPress: Authentication Bypass in SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery plugin

In SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery component for WordPress versions 3.9.7 and earlier a critical severity vulnerability CVE-2026-15014 was detected. This vulnerability allows an attacker to take over user accounts. To address this issue, users should upgrade SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15014.

Read more
CMS
12 Aug 2026 Business and Enterprise Solutions
WordPress: SQL Injection vulnerability in SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery

In SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery component for WordPress versions 3.9.7 and earlier a medium severity vulnerability CVE-2026-15670 was detected. This vulnerability allows authenticated attackers to extract sensitive information from the database. To address this issue, users should upgrade SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15670.

Read more
CMS
12 Aug 2026 DevOps
Apache ActiveMQ: Denial-of-Service Vulnerability

In Apache ActiveMQ versions before 5.19.9, a high severity vulnerability CVE-2026-59878 was detected. This vulnerability allows a remote unauthenticated attacker to cause a denial-of-service. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-59878.

Read more
Developer Tools
12 Aug 2026 DevOps
Apache ActiveMQ: Improper Authorization Vulnerability

In Apache ActiveMQ versions before 5.19.9 a medium severity vulnerability CVE-2026-61487 was detected. This vulnerability allows an authenticated low-privilege user to bypass write permissions for message queues. To address this issue, users should upgrade Apache ActiveMQ to version 5.19.9 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-61487.

Read more
Developer Tools
12 Aug 2026 DevOps
Node: Prototype Pollution Vulnerability

In certain versions of Node a medium severity vulnerability CVE-2026-66922 was detected. This vulnerability allows an attacker to tamper with object prototypes, potentially leading to denial of service or other security bypasses. To address this issue, users should upgrade Node to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-66922.

Read more
Developer Tools
Case Studies