bluray-disc.de Cross Site Scripting vulnerability OBB-2688061

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading
alarm-kuhbier.de Cross Site Scripting vulnerability OBB-2688055

Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...

Continue Reading
Mailhog 1.0.1 Cross Site Scripting

Post ContentRead More ...

Continue Reading
WSO2 Management Console Cross Site Scripting

Post ContentRead More ...

Continue Reading
Cloudflare Public Bug Bounty: Sign in with Apple generates long-life JWTs, seemingly irrevocable, that grant immediate access to accounts

The OIDC JWT token issued on a new Sign in with Apple ID to the Cloudflare Dashboard had an excessive lifetime. When intercepted by a malicious actor, it enabled impersonation of the affected user on ...

Continue Reading
Cloudflare Public Bug Bounty: HTTP request smuggling with Origin Rules using newlines in the host_header action parameter

The `host_header` action parameter available to rulesets in the [Origin Rules API](https://developers.cloudflare.com/rules/origin-rules/) lacked sufficient input validation i.e., allowing CRLF charact ...

Continue Reading
CVE-2022-2218

Cross-site Scripting (XSS) - Stored in GitHub repository ionicabizau/parse-url prior to 7.0.0.Read More ...

Continue Reading
CVE-2022-2208

NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: