News Security Avada zero-click RCE chain (CVE-2026-18431) and a separate Fusion Builder XSS: what WordPress admins should know August 31, 2026 by Alex Mira | Leave a Comment A critical six-step chain in the Avada theme enables zero-click RCE (CVE-2026-18431), and a separate stored XSS impacts Fusion Builder up to 3.15.6 (CVE-2026-16654). Here’s what’s confirmed and what to update now. Read more » Avada theme CVE-2026-16654 CVE-2026-18431 Fusion Builder Remote code execution Stored XSS WordPress security
News Security CVE-2026-82222 in GiveWP: Remote command execution fixed in 4.16.7.2 August 31, 2026 by Alex Mira | Leave a Comment CVE-2026-82222 affects GiveWP through 4.16.7.1 and can lead to remote command execution via an object injection chain. Update to 4.16.7.2 and review recent user registrations. Read more » CVE-2026-82222 GiveWP Patchstack Remote code execution vulnerability Website security wordpress
News Security Ubiquiti patches three max‑severity UniFi vulnerabilities: CVE‑2026‑77537, CVE‑2026‑77550, CVE‑2026‑77554 August 31, 2026 by Alex Mira | Leave a Comment Ubiquiti fixed three max‑severity UniFi flaws—two command injections and one auth bypass—that can be triggered over the network without authentication. Update Protect to 7.2.105+, Talk to 5.3.2+, and follow Ubiquiti’s advisory for UniFi OS. Read more » CVE-2026-77537 CVE-2026-77550 CVE-2026-77554 Network Security Patching Ubiquiti UniFi Vulnerabilities
News Windows Windows 11’s optional KB5120998 is scrambling mouse cursor settings. Microsoft is investigating. August 31, 2026 by Alex Mira | Leave a Comment Microsoft acknowledges reports that Windows 11’s optional KB5120998 alters mouse cursor settings and is investigating. Separate Defender false alerts are also reported. Read more » 24h2 25H2 KB5120998 microsoft Microsoft Defender Windows 11 Windows Update
News Windows Windows 11 26H2 reaches Release Preview as Microsoft readies ISO and media tools August 31, 2026 by Alex Mira | Leave a Comment Windows 11 26H2 has entered Release Preview as build 26300.9278. Microsoft is preparing ISOs and the Media Creation Tool, with a low‑disruption enablement update on the same servicing branch as 24H2/25H2. Read more » Enterprise IT iso Media Creation Tool microsoft Release Preview Windows 11 Windows Insider
News Windows Windows 11 KB5120998 brings a movable taskbar and a resizable Start menu August 31, 2026 by Alex Mira | Leave a Comment Windows 11 KB5120998 is an optional preview with long‑requested UI changes: a movable taskbar, a smaller taskbar option, and Start menu sizing and controls. Offline installers are available, but they’re large. Read more » 24h2 25H2 KB5120998 optional update Start menu taskbar update Windows 11
News Windows Microsoft gives New Outlook a Classic look—without changing what it is August 31, 2026 by Alex Mira | Leave a Comment Microsoft is rolling out an optional “Outlook Classic” theme for New Outlook on Windows and the web. It mimics Classic Outlook’s look without changing functionality, migration settings, or admin controls. Read more » IT admin microsoft Microsoft 365 New Outlook Outlook Outlook on the web windows
News Windows Windows 11’s August update is crashing some games; Microsoft links reports to RGB drivers August 21, 2026 by Alex Mira | Leave a Comment Windows 11’s August update KB5121003 is causing crashes and reboots in some games. Microsoft links the issue to systems with RGB drivers like inpoutx64 and is investigating, with no fix yet. Read more » Drivers gaming KB5121003 microsoft patch tuesday RGB Windows 11
News Security CVE-2026-32475: Critical Elementor Pro file upload flaw can enable unauthenticated RCE August 21, 2026 by Alex Mira | Leave a Comment Elementor Pro sites with a File Upload field in a public form are exposed to a critical file upload flaw (CVE-2026-32475) that can enable unauthenticated RCE. Update to 4.2.2+ and audit the Elementor forms upload directory. Read more » CVE-2026-32475 Elementor Pro Patch management Plugin Vulnerabilities Remote code execution WordPress security
News Security Critical authentication bypass reported in User Profile Builder plugin August 18, 2026 by Alex Mira | Leave a Comment Wordfence reports a critical authentication bypass in the User Profile Builder plugin (CVE-2026-15826) that can log attackers in as user ID 1 under specific settings. Update to version 3.16.5 and review autologin configuration. Read more » Authentication bypass CVE-2026-15826 Plugin vulnerability User Profile Builder Website security Wordfence WordPress security