CVE-2026-84238: Patch for YITH Request a Quote for WooCommerce Premium
CVE-2026-84238 affects YITH Request a Quote for WooCommerce Premium prior to version 4.46.0. Patchstack recommends updating to version 4.46.0 or later.
Read ArticleCurrent security alerts, regulatory guidance and practical knowledge for well-founded cyber risk decisions.
CVE-2026-84238 affects YITH Request a Quote for WooCommerce Premium prior to version 4.46.0. Patchstack recommends updating to version 4.46.0 or later.
Read Article
CVE-2026-62911 affects local Microsoft Exchange servers. Microsoft is providing security updates for Exchange Server SE RTM, as well as ESU updates for older versions.
Read Article
CVE-2026-16947 affects the WordPress plugin "Total Processing Card Payments for WooCommerce" and allows SSRF.
Read Article
The Spring Batch release dated August 20, 2026, contains three vulnerabilities in the Spring Framework. Affected applications should upgrade to newer versions.
Read Article
CVE-2026-55634 and CVE-2026-55220 affect Pimcore. Fixes are available for three version series.
Read Article
CVE-2026-81934 affects Redis instances configured with TLS. Fixed releases are available for several Redis branches.
Read Article
CVE-2026-32475 (Elementor Pro ≤4.2.1), CVE-2026-66592 (rtMedia ≤4.7.11) and CVE-2026-78003 (Mailgun ≤2.2.0): PHP upload, SQL injection, and SSRF. Patches are partially available.
Read Article
DORA Information Registry: How Financial Institutions File Reports with BaFin — Legal Basis, Formats, Deadlines, and When a Report Is Considered Filed.
Read Article
CVE-2026-19478 (CVSS 9.4) affects GitLab CE/EE (self-managed) and, under certain conditions, could allow unauthenticated modifications or deletions. Active exploitation has been confirmed.
Read Article
Section 39 of the BSI Act (BSIG) changes the compliance requirements for KRITIS operators. Learn what the new 3-year cycle and defect monitoring entail.
Read Article
Analysis of the critical vulnerability CVE-2026-18691 (CVSS 9.0) in MongoDB Server. Details on the risk of compromise to replica sets and recommended actions.
Read Article
Analysis of the critical RCE vulnerability CVE-2026-58231 (CVSS 10.0) in SAP Commerce Cloud. Affected versions, available patches, and recommended actions for organizations.
Read Article
Critical vulnerabilities (CVE-2026-28005, CVE-2026-6235, CVSS 9.8) in the WordPress plugins Kadence WooCommerce Email Designer and Sendmachine allow unauthenticated privilege escalation.
Read Article