ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
Attackers are exploiting CVE-2026-48842, a pre-authenticated SQL injection in Roundcube's virtuser_query plugin patched in May. The Canadian Centre for Cyber Security warned Monday that the flaw is being exploited in the wild. Over 523,000 Roundcube instances are exposed online. Admins should upgrade to versions 1.6.16 or 1.7.1, or disable the plugin.
Tap to vote and see what everyone thinks.
Summary by ByteBrief