All-in-One WP Migration plugin vulnerability CVE-2026-19949 lets attackers plant hidden SQL payloads via WordPress trackbacks; the injected code fires the moment a site admin runs a routine backup, ...
Sangoma Switchvox faces an actively exploited critical flaw enabling unauthenticated remote command execution.
Attackers abuse Node.js to execute malicious scripts and deploy payloads in attacks targeting governments, technology ...