The report identifies a bypass vulnerability in the biography field on addons.allizom.org. Despite the application's policy against allowing links, it was possible to embed functional hyperlinks ...
Continue ReadingAugust 12, 2025
The vulnerability allowed unauthorized disclosure of private email addresses of WakaTime users through the private leaderboards feature. The email addresses were exposed to leaderboard creators and me ...
Continue ReadingAugust 12, 2025
Vulnerability description not...Read More ...
Continue ReadingAugust 12, 2025
Summary The parameter add_links in the API /json/add_package is vulnerable to SQL Injection. SQL injection vulnerabilities can lead to sensitive data leakage. Details Affected file:https://github.c ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:12:37+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:12:37+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:43:09+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
creation_timestamp| type| source ---|---|--- 2025-08-12 02:43:09+00:00| seen|...Read More ...
Continue ReadingAugust 12, 2025
Back to Main