An issue in Roadcute API v.1 allows a remote attacker to execute arbitrary code via the application exposing a password reset API endpoint that fails to validate the identity of the requester...Read M ...
Continue ReadingAugust 23, 2025
Aikaan IoT management platform v3.25.0325-5-g2e9c59796 provides a configuration to disable user sign-up in distributed deployments by hiding the sign-up option on the login page UI. However, the sign- ...
Continue ReadingAugust 23, 2025
An XML external entities (XXE) injection vulnerability in the /init API endpoint in Exagid EX10 7.0.1p02 allows an authenticated, unprivileged attacker to achieve information disclosure and privilege ...
Continue ReadingAugust 23, 2025
creation_timestamp| type| source ---|---|--- 2025-08-22 12:14:06+00:00| seen| https://infosec.exchange/users/cR0w/statuses/115072358506038626 2025-08-22 12:43:46+00:00| seen|...Read More ...
Continue ReadingAugust 22, 2025
creation_timestamp| type| source ---|---|--- 2025-08-22 10:31:53+00:00| seen|...Read More ...
Continue ReadingAugust 22, 2025
QuantumNous new-api v.0.8.5.2 is vulnerable to Cross Site Scripting...Read More ...
Continue ReadingAugust 22, 2025
creation_timestamp| type| source ---|---|--- 2025-08-22 12:38:45+00:00| seen|...Read More ...
Continue ReadingAugust 22, 2025
creation_timestamp| type| source ---|---|--- 2025-08-22 12:33:45+00:00| seen|...Read More ...
Continue ReadingAugust 22, 2025
Back to Main