The Call&Book Mobile Bar WordPress plugin through 1.2.2 does not sanitize and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting atta ...
Continue ReadingMay 30, 2022
Cross-site Scripting (XSS) - Stored in GitHub repository go-gitea/gitea prior to 1.16.9.Read More ...
Continue ReadingMay 30, 2022
Buffer Over-read in GitHub repository vim/vim prior to 8.2.Read More ...
Continue ReadingMay 30, 2022
The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify properties of the Object.prototype. This vulnerability can occur in multiple ways: ...
Continue ReadingMay 30, 2022
The Master operator may be able to embed script tag in HTML with alert pop-up display cookie.Read More ...
Continue ReadingMay 30, 2022
The software may be vulnerable to both Un-Auth XML interaction and unauthenticated device enrollment.Read More ...
Continue ReadingMay 30, 2022
Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.Read More ...
Continue ReadingMay 30, 2022
Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker ...
Continue ReadingMay 30, 2022
Back to Main