Enterprise document management system (DMS) vendors, ONLYOFFICE, OpenKM, LogicalDOC, and Mayan, are yet to resolve several severe DMS vulnerabilities, according to cybersecurity firm Rapid7. It warned that stored cross-site scripting (XSS) flaws in the systems pose high risks. No patches or updates have been released, and vendors have not responded to Rapid7’s disclosures.

Anne Arundel government has made progress in securing systems since cyber incident, officials say – CBS News
Anne Arundel County government officials have reported making progress in securing systems following a cyber incident. Specific details of the incident were not provided, but