The Swifty Page Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0.1. This is due to missing or incorrect nonce validation on several AJAX a ...
Continue ReadingJanuary 06, 2023
Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta15 on the `beta` and `tests-passed` branches, users can create posts with raw bo ...
Continue ReadingJanuary 06, 2023
Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 2.9.0.beta16 on the `beta` and `tests-passed` branches, parsing posts can be susceptible t ...
Continue ReadingJanuary 06, 2023
The Swifty Page Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the âspm_plugin_options_page_tree_max_widthâ parameter in versions up to, and including, 3.0.1 d ...
Continue ReadingJanuary 06, 2023
In version 2.9.0.beta14 of Discourse, an open-source discussion platform, maliciously embedded urls can leak an admin's digest of recent topics, possibly exposing private information. A patch is avail ...
Continue ReadingJanuary 06, 2023
A vulnerability, which was classified as critical, was found in soshtolsus wing-tight. This affects an unknown part of the file index.php. The manipulation of the argument p leads to file inclusion. I ...
Continue ReadingJanuary 06, 2023
A vulnerability classified as problematic was found in vicamo NetworkManager. Affected by this vulnerability is the function nm_setting_vlan_add_priority_str/nm_utils_rsa_key_encrypt/nm_setting_vlan_a ...
Continue ReadingJanuary 06, 2023
A vulnerability, which was classified as problematic, has been found in vicamo NetworkManager. Affected by this issue is the function send_arps of the file src/devices/nm-device.c. The manipulation le ...
Continue ReadingJanuary 06, 2023
Back to Main