Joomla JCE CVE-2026-48907: Patch the KEV Editor Flaw
CISA added Joomla Content Editor CVE-2026-48907 to KEV. Update JCE Pro to 2.9.99.6 or later, apply the vendor patch package for older sites, and review Joomla for cleanup.
Learn More
CISA added Joomla Content Editor CVE-2026-48907 to KEV. Update JCE Pro to 2.9.99.6 or later, apply the vendor patch package for older sites, and review Joomla for cleanup.
Learn MoreCISA added Cisco Catalyst SD-WAN Manager CVE-2026-20262 to KEV on June 15, 2026. Patch fixed software, restrict management access, and review admin activity.
Learn MoreNPM 12 changes npm install defaults in July 2026. Check CI, WordPress theme builds, native modules, Git dependencies, and approved scripts now.
Learn MoreUpgrade Proxmox Mail Gateway 9.1 with mail flow, queue, quarantine, TLS, DNS, backup, and rollback checks.
Learn MoreMicrosoft now lists the WUSA network-share update issue as fixed for Windows 11 24H2/25H2 and Windows Server 2025. Here is the safe admin path.
Learn MoreSygnia says Velvet Ant replaced Linux PAM and OpenSSH components in a long-running intrusion. Hosting admins should verify login-stack integrity before rotating credentials.
Learn MoreArch AUR users should review recent AUR builds after the Atomic Arch campaign hijacked orphaned packages to deliver credential-stealing malware.
Learn MorePatch self-hosted LangGraph deployments for SQLite, msgpack, and Redis checkpointer flaws, then review checkpoint stores, secrets, network access, and AI workflows.
Learn MoreUpdate phpBB forums to 3.3.17 after a critical authentication bypass report, then test login, OAuth, admin access, backups, and forum moderation workflows.
Learn MoreUpdate the Palo Alto Networks CommvaultSecurityIQ Marketplace integration for Cortex XSOAR and Cortex XSIAM to 1.2.0 or later for CVE-2026-0274.
Learn More