CVE Tools

In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw

SecurityWeekBy SecurityWeek News

Reported exploitedSAPBlack Axenpm

Our summary

This week’s security developments include a nearly 13-year Swiss prison sentence for the developer linked to Lockergoga, MegaCortex, and Nefilim ransomware. Defiant reported active exploitation of a file-upload vulnerability in the WooCommerce Wholesale Lead Capture plugin, which can enable PHP webshell uploads; users should update to version 2.0.3.2. SAP customers should urgently patch CVE-2026-44756, an unauthenticated memory-corruption issue affecting Extended Passport processing in products including S/4HANA, NetWeaver, and Business Suite. TP-Link also fixed Tapo C200 flaws CVE-2026-15315 and CVE-2026-15316 in firmware V5_1.4.6, while Plugin4Shell exposed silent plugin takeover risks for AI coding agents.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store