<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Blog — jproxx</title><description>Current advisories, security updates and news around WordPress, e-commerce and hosting.</description><link>https://jproxx.com/</link><language>en-US</language><item><title>Security Advisory: Two Vulnerabilities in the Guzzle PHP HTTP Client (CVE-2026-55568 and CVE-2026-55767) — Relevant Because of Its Spread Across PHP Libraries</title><link>https://jproxx.com/en/blog/guzzle-php-http-client-2026-06/</link><guid isPermaLink="true">https://jproxx.com/en/blog/guzzle-php-http-client-2026-06/</guid><description>Two vulnerabilities in the widely used Guzzle PHP HTTP client: unencrypted proxy traffic and a CookieJar flaw. Both are fixed in version 7.12.1.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Security</category><category>PHP</category><category>CVE</category></item><item><title>Security Bulletin for 23 June 2026: SQL Injection in Infility Global and Two Still-Unpatched WordPress Plugin Flaws</title><link>https://jproxx.com/en/blog/security-bulletin-2026-06-23/</link><guid isPermaLink="true">https://jproxx.com/en/blog/security-bulletin-2026-06-23/</guid><description>Daily security overview for WordPress and PHP: a SQL injection in Infility Global and two WordPress plugin flaws that are not yet patched.</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate><category>Security</category><category>Bulletin</category><category>WordPress</category></item><item><title>Security Bulletin for 22 June 2026: Privilege Escalation in Vitepos, a Critical Flaw in PhpSpreadsheet, and Cross-Site Scripting in WooCommerce Auction Pro</title><link>https://jproxx.com/en/blog/security-bulletin-2026-06-22/</link><guid isPermaLink="true">https://jproxx.com/en/blog/security-bulletin-2026-06-22/</guid><description>Daily security overview for WordPress, e-commerce and PHP: privilege escalation in Vitepos, a flaw in PhpSpreadsheet, and XSS in WooCommerce Auction Pro.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Security</category><category>Bulletin</category><category>WordPress</category><category>PHP</category></item><item><title>Security advisory: critical UpdraftPlus flaw (CVE-2026-10795) — check and update WordPress now</title><link>https://jproxx.com/en/blog/updraftplus-cve-2026-10795/</link><guid isPermaLink="true">https://jproxx.com/en/blog/updraftplus-cve-2026-10795/</guid><description>Critical, actively exploited flaw in the WordPress backup plugin UpdraftPlus (CVE-2026-10795): versions up to 1.26.4 affected — update to 1.26.5 now.</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate><category>Security</category><category>WordPress</category><category>CVE</category></item><item><title>Our Local AI Coding Stack: Qwen3.6-35B on vLLM — the Real Numbers</title><link>https://jproxx.com/en/blog/eigener-ki-coding-stack/</link><guid isPermaLink="true">https://jproxx.com/en/blog/eigener-ki-coding-stack/</guid><description>How we run Qwen3.6-35B as a coding assistant on our own hardware — vLLM, FP8, 256K context, speculative decoding. With real measurements from live operation.</description><pubDate>Sun, 21 Jun 2026 00:00:00 GMT</pubDate><category>AI</category><category>Infrastructure</category></item></channel></rss>