WordPress OAuth Client by DigitialPixies plugin <= 1.1.0 – Cross-Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability discovered by Lana Codes in WordPress OAuth Client by DigitialPixies plugin (versions Read More ...

Continue Reading
WordPress OAuth Client by DigitialPixies plugin <= 1.1.0 – Auth. Stored Cross-Site Scripting (XSS) vulnerability

Auth. Stored Cross-Site Scripting (XSS) vulnerability discovered by Lana Codes in WordPress OAuth Client by DigitialPixies plugin (versions Read More ...

Continue Reading
(RHSA-2022:8057) Important: grafana security, bug fix, and enhancement update

Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. The following packages have been upgraded to a later upstream version: grafana (7.5.1 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Apache SOAP XML External Entity Injection Vulnerability

Apache SOAP is used as a client-side library by the Apache Foundation to invoke SOAP services available elsewhere, and as a server-side tool to implement SOAP-accessible services. parser in the RPCRou ...

Continue Reading

CVSS3 - HIGH

Evolution of API Security – A Practical Guide to Addressing API Threats in 2023

The kind of API security scenarios we witnessed today were never like this from the beginning of time. It has gone to extra lengths to become responsive and productive as it’s now. _How was it ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Moderate: php:7.4 security, bug fix, and enhancement update

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. The following packages have been upgraded to a later upstream version: php (7.4.30), php-pear (1.10.13). (BZ#20554 ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

RHEL 8 : php:7.4 (RHSA-2022:7628)

The remote Redhat Enterprise Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RHSA-2022:7628 advisory. - php: Special character breaks path in x ...

Continue Reading
PHP vulnerabilities

It was discovered that PHP incorrectly handled certain gzip files. An attacker could possibly use this issue to cause a denial of service. (CVE-2022-31628) It was discovered that PHP incorrectly handl ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: