Skip to content

Knowledge Base

Over 2645 articles from nFlo experts. Learn more about cybersecurity, IT infrastructure, cloud and compliance.

Latest Articles

View all
Knowledge Base Aug 3, 2026

ITIL — what it is, how it relates to ITSM and how to implement it in practice

ITIL is the most widely adopted body of good practice for IT service management. Learn how ITIL differs from ITSM, what ITIL 4 changed and why most implementations fail.

Security Alerts Jul 24, 2026

CVE-2024-58354: repository takeover via pull_request_target workflow in Cal.com (CVSS 9.9)

cal.com (calcom repository, later renamed cal.diy) is affected by a repository takeover vulnerability in its GitHub Actions workflows. The workflow pr.yml uses the pull_request_target trigger with the...

Security Alerts Jul 24, 2026

CVE-2025-71389: unauthenticated RCE via bundled Next.js RSC deserialization in Cal.com (CVSS 10.0)

Cal.com (calcom/cal.diy) before 5.9.9 is vulnerable to unauthenticated remote code execution because it bundles a version of Next.js whose React Server Components (RSC) request handling deserializes a...

Security Alerts Jul 24, 2026

CVE-2026-12877: unauthenticated SQL injection in Project Management and Issue Tracking plugin for WordPress (CVSS 9.1)

The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5.1.0 does not sanitise and escape user supplied input before using it in a SQL query, allowing unauthenticated attackers...

Security Alerts Jul 24, 2026

CVE-2026-15704: ABAC authorization bypass via trailing slash handling in Eclipse BaSyx Go Components (CVSS 9.8)

In Eclipse BaSyx Go Components versions up to and including 1.0.0, ABAC-enabled deployments are vulnerable to an authorization bypass caused by inconsistent trailing-slash handling between the ABAC mi...

Security Alerts Jul 24, 2026

CVE-2026-42933: unintended proxy allowing OT segmentation bypass in Pronetiqs IntraVUE (CVSS 10.0)

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation....

Stay Updated

Subscribe to our newsletter and receive the latest articles about cybersecurity and IT.

By subscribing, you agree to receive our newsletter. You can unsubscribe at any time.

Want to Reduce IT Risk and Costs?

Book a free consultation - we respond within 24h

Response in 24h Free quote No obligations

Or download free guide:

Download NIS2 Checklist