Skip to content

cve

2 articles on this topic

  • nextjs
  • sicurezza

Next.js flags a critical patch for 26 August: get ready now

Vercel did something rare and right: it gave advance notice that a patch for a critical Next.js vulnerability lands on 26 August, in versions 16.3.3 and 15.5.24. The details come that day. What to do in the days before so you do not eat the exploitation window.

, 2 min read

  • wordpress
  • sicurezza

WP2Shell: the WordPress flaw that needs no login

On 17 July WordPress closed WP2Shell, a two-CVE chain giving unauthenticated code execution on a clean install, and the first attempts landed within hours. What we checked across the sites we maintain, and why patched does not mean clean.

, 3 min read

Have a project in mind?

Tell us what you need. We reply within one working day.