GHSA-QPJQ-C5HR-7925 Mattermost Confluence Plugin is Missing Authentication for Critical Function

Mattermost Confluence Plugin versions < 1.5.0 fail to enforce user authentication of the Mattermost instance, allowing unauthenticated attackers to edit channel subscriptions via API call to th ...

Continue Reading
curl: Failure to strip Proxy-Authorization header on change in origin

Vulnerability description not...Read More ...

Continue Reading
GHSA-V6C8-G53H-MC2H Mattermost Confluence Plugin has Missing Authorization vulnerability

Mattermost Confluence Plugin versions < 1.5.0 fail to check user access to the channel, allowing attackers to create a channel subscription without proper access to the channel via an API call ...

Continue Reading
GHSA-Q355-H244-969H Komari vulnerable to Cross-site WebSocket Hijacking

Summary WebSocket upgrader has disabled origin checking, enabling Cross-Site WebSocket Hijacking (CSWSH) attacks against authenticated users Details https://github.com/komari-monitor/komari/blob/bd5a6 ...

Continue Reading
GHSA-JHMR-57CJ-Q6G9 Komari vulnerable to 2FA Authentication Bypass

Summary Logic error in 2FA verification condition allows bypass of two-factor authentication Details https://github.com/komari-monitor/komari/blob/bd5a6934e1b79a12cf1e6a9bba5372d0e04f3abc/api/login.go ...

Continue Reading
CVE-2023-43789

creation_timestamp| type| source ---|---|--- 2025-08-12 02:52:31+00:00| seen|...Read More ...

Continue Reading
curl: OpenSSL HTTP/3 bogus CURLINFO_TLS_SSL_PTR

Vulnerability description not...Read More ...

Continue Reading
CVE-2023-43788

creation_timestamp| type| source ---|---|--- 2025-08-12 02:52:31+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: