ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
A maximum-severity GiveWP WordPress plugin vulnerability, CVE-2026-82222, lets unauthenticated attackers execute server commands. Affecting versions through 4.16.7.1, exploitation chains three issues, including an exposed registration action. GiveWP fixed it in version 4.16.7.2, released August 27, by blocking serialized data during donation processing.
Tap to vote and see what everyone thinks.
Summary by ByteBrief