A vulnerability has been found in linlinjava litemall up to 1.8.0. This vulnerability affects the function create of the file litemall-admin-api/src/main/java/org/linlinjava/litemall/admin/web/AdminSt ...
Continue ReadingAugust 14, 2025
A security issue in the runtime event system allows unauthenticated connections to receive a reusable API token. This token is broadcasted over a WebSocket and can be intercepted by any local client l ...
Continue ReadingAugust 14, 2025
A vulnerability has been found in linlinjava litemall up to 1.8.0. This vulnerability affects the function create of the file litemall-admin-api/src/main/java/org/linlinjava/litemall/admin/web/AdminSt ...
Continue ReadingAugust 14, 2025
A vulnerability has been found in linlinjava litemall up to 1.8.0. This vulnerability affects the function create of the file litemall-admin-api/src/main/java/org/linlinjava/litemall/admin/web/AdminSt ...
Continue ReadingAugust 14, 2025
A Comprehensive Analysis of HijackLoader and Its Infection Chain By Ryan Weil · August 18, 2025 Initial contact Dodi Repacks is a website that distributes pirated games. The site is listed as safe/t ...
Continue ReadingAugust 14, 2025
Missing Authorization vulnerability in softnwords SMM API allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects SMM API: from n/a through...Read More ...
Continue ReadingAugust 14, 2025
The PPWP – Password Protect Pages WordPress plugin before version 1.9.11 allows to put the site content behind a password authorization, however users with subscriber or greater roles can view conte ...
Continue ReadingAugust 14, 2025
In ESPEC North America Web Controller 3 before 3.3.4, /api/v4/auth/ with any invalid authentication request results in exposing a JWT secret. This allows for elevated permissions to the...Read More ...
Continue ReadingAugust 14, 2025
Back to Main