The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
PHP could be made to run programs if it received specially crafted network traffic.
A recently patched vulnerability (CVE-2019-11043) in PHP is being actively exploited by attackers to compromise NGINX web servers, threat intelligence firm Bad…
The package php before version 7.3.11-1 is vulnerable to arbitrary code execution.
If you're running any PHP based website on NGINX server and have PHP-FPM feature enabled for better performance, then beware of a newly disclosed vulnerability…
A vulnerability in PHP might allow an attacker to execute arbitrary code.
An update that solves three vulnerabilities can now be installed.
Security update
An update that solves three vulnerabilities can now be installed.
An update that solves three vulnerabilities can now be installed.
An update that solves six vulnerabilities and has one security fix can now be installed.
An update that solves six vulnerabilities and has one security fix can now be installed.
Version 2.1.9 PHPC-2744 Fix out-of-bounds read when building BSON field path by @paulinevos & @GromNaN in #2081 CVE-2026-84968
Version 2.1.9 PHPC-2744 Fix out-of-bounds read when building BSON field path by @paulinevos & @GromNaN in #2081 CVE-2026-84968
Version 2.5.2 PHPC-2744 Fix out-of-bounds read when building BSON field path by @paulinevos & @GromNaN in #2081 CVE-2026-84968 Version 2.5.0 Honor the server-s…
A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to ach…
Oracle Linux 8 has received security updates, including fixes for CVE-2026-14355 related to memory corruption in OpenSSL, along with various package updates an…
Security update
Security update
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
Several security issues were fixed in SPIP.
Update to v3.0.50; contains fix for CVE-2026-32935