Mattermost versions 10.5.x <= 10.5.4, 9.11.x <= 9.11.13 fail to properly restrict API access to team information, allowing guest users to bypass permissions and view information about pu ...
Continue ReadingJune 11, 2025
creation_timestamp| type| source ---|---|--- 2025-06-11 12:17:31+00:00| seen|...Read More ...
Continue ReadingJune 11, 2025
creation_timestamp| type| source ---|---|--- 2025-06-11 13:34:29+00:00| seen|...Read More ...
Continue ReadingJune 11, 2025
The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ parameters in all versions up to, and including, 6.13.2 due to insufficient input sa ...
Continue ReadingJune 11, 2025
The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ parameters in all versions up to, and including, 6.13.2 due to insufficient input sa ...
Continue ReadingJune 11, 2025
The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ parameters in all versions up to, and including, 6.13.2 due to insufficient input sa ...
Continue ReadingJune 11, 2025
The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ parameters in all versions up to, and including, 6.13.2 due to insufficient input sa ...
Continue ReadingJune 11, 2025
creation_timestamp| type| source ---|---|--- 2025-06-11 11:17:44+00:00| seen|...Read More ...
Continue ReadingJune 11, 2025
Back to Main