authorization

Tech Optimizer
May 21, 2026
PostgreSQL has released versions 18.4, 17.10, 16.14, 15.18, and 14.23 to address 11 security vulnerabilities and over 60 bugs. The vulnerabilities affect PostgreSQL versions 14 through 18 and include issues such as remote code execution, SQL injection, and denial-of-service risks. Specific vulnerabilities include: - CVE-2026-6472: Missing authorization in CREATE TYPE allows query hijacking. - CVE-2026-6473: Integer wraparound leads to out-of-bounds writes and server crashes. - CVE-2026-6474: Format string issue leaks server memory. - CVE-2026-6475: Symlink attack allows overwriting arbitrary files. - CVE-2026-6476: SQL injection allows execution of arbitrary SQL as superuser. - CVE-2026-6477: Memory buffer overwrite via libpq lo_* functions. - CVE-2026-6478: Timing attack exposes MD5-hashed passwords. - CVE-2026-6479: SSL/GSS recursion flaw allows denial-of-service. - CVE-2026-6575: Buffer over-read leaks memory data (PostgreSQL 18 only). - CVE-2026-6637: Refint module enables stack overflow and SQL injection, leading to possible RCE. - CVE-2026-6638: SQL injection in REFRESH PUBLICATION via table names. Organizations are advised to upgrade to the latest versions, avoid MD5 password authentication, restrict privileges, audit extensions, and monitor for abnormal activity. PostgreSQL 14 will reach its end-of-life on November 12, 2026.
Winsage
May 14, 2026
Microsoft's Windows Autopatch service mistakenly deployed restricted driver updates to some managed Windows devices without proper approval, affecting Windows 11 versions 25H2, 24H2, and 23H2. This led to unexpected restarts and stability issues. Microsoft implemented a server-side fix to address this problem, confirming that only a limited subset of devices in the EU region was impacted and that no client-side action was required. Additionally, some users faced difficulties installing Office on Windows 365 machines due to a configuration change from a recent service update.
Tech Optimizer
May 1, 2026
Surfshark One+ with Incogni is a comprehensive online privacy solution that combines a VPN, antivirus protection, and personal data removal services. The two-year plan is currently priced at .99, reduced from its regular price of 9.40. The Surfshark component includes a VPN, real-time antivirus protection, and Surfshark Alert for data breach notifications, while Incogni handles the removal of personal information from over 420 data brokers. Incogni has processed over 245 million removal requests, verified by Deloitte, and offers identity theft coverage of up to million. The service supports up to five devices and is compatible with various operating systems.
AppWizard
April 10, 2026
PC Gamer's Mollie Taylor praised the Starsand Island demo in December 2025, while Lauren Morton called it "the first can't-miss cozy game of 2026" in February. The game is currently unavailable on Steam due to the developer, Seed Sparkle Lab, using unauthorized visual elements from a classic title in their mini-game section. They apologized for this oversight and are working on a new build to remove the contentious content. Fans speculate the classic title might be Tetris, but this is unconfirmed. Seed Sparkle has decided to temporarily delist Starsand Island and will reward current owners with the "Shining Star" outfit set once the revised version is approved. Players' progress will remain intact. The studio is enhancing its internal review processes following this incident and a previous wave of fake positive user reviews. A specific return date for the game on Steam has not been disclosed, but it is still available on the Xbox Store.
Winsage
April 7, 2026
The United States and Iran are engaging in digital tensions, with Iranian embassies using social media for pointed critiques of President Trump. A notable instance occurred when the Iranian consulate in Mazar-i-Sharif shared a satirical video combining gameplay from the 90s game Minesweeper with a map of the Strait of Hormuz, humorously highlighting Trump's navigation efforts. The video features animated explosions and sarcastic text, emphasizing the risks associated with US navigation in the strategically important waterway. Iran has stated it deployed mines in the Strait of Hormuz to control maritime traffic, and the use of Minesweeper in this context serves to illustrate the dangers of navigating these waters.
Search