Ubuntu USN-8516/8517: Patch Apache HTTP Server and ClamAV on Hosting Servers
Ubuntu USN-8516-1 and USN-8517-1 patch Apache HTTP Server and ClamAV vulnerabilities. Update hosting, mail, and scanning servers.

Ubuntu USN-8516-1 and USN-8517-1 patch Apache HTTP Server and ClamAV vulnerabilities. Update hosting, mail, and scanning servers.
WHMCS 9.0.6 and 8.13.5 include security and stability updates. Back up files and database, update, and verify billing workflows.
Ubiquiti Security Advisory Bulletin 066 fixes critical UniFi Connect, Talk, Access, Protect, and OS flaws. Back up, patch, and verify versions.
GhostLock CVE-2026-43499 is a high-severity Linux kernel privilege-escalation issue. Patch vendor kernels, reboot, and verify hosting/container hosts.
CISA added JoomShaper SP Page Builder CVE-2026-48908 to KEV. Back up Joomla sites, update to 6.6.2+, and review for compromise.
CISA added Langflow CVE-2026-55255 to KEV. Update to 1.9.2 or later, restrict exposed builders, and review tenant boundaries.
CISA added Joomlack Page Builder CK CVE-2026-56290 to KEV. Back up Joomla sites, update the extension, and review for compromise.
CISA updated CVE-2025-3248 for Langflow to known ransomware campaign use. Check exposed Langflow, upgrade to 1.3.0 or later, and review connected secrets.
CERT/CC warns that CVE-2026-11405 affects multiple Tenda firmware builds. Admins should disable remote management, isolate, review, and replace if needed.
BeyondTrust BT26-03 covers critical Remote Support and Privileged Remote Access CVEs. Self-hosted RS/PRA admins should back up, patch, and verify access.