CVE-2024-39924

An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been identified in the authentication and authorization process of the endpoint responsible for altering the ...

Continue Reading
CVE-2024-8242 MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.3 – Authenticated (Subscriber+) Limited Arbitrary File Upload

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_user_profile() f ...

Continue Reading
CVE-2024-6587

A Server-Side Request Forgery (SSRF) vulnerability exists in berriai/litellm version 1.38.10. This vulnerability allows users to specify the api_base parameter when making requests to POST /chat/compl ...

Continue Reading
CVE-2024-8269 MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.3 – Unauthorized User Registration

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to unauthorized user registration in all versions up to, and including, 4.15.3. This is due ...

Continue Reading
CVE-2024-8242 MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.3 – Authenticated (Subscriber+) Limited Arbitrary File Upload

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_user_profile() f ...

Continue Reading
CVE-2024-8242

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_user_profile() f ...

Continue Reading
CVE-2024-8269

The MStore API – Create Native Android &amp; iOS Apps On The Cloud plugin for WordPress is vulnerable to unauthorized user registration in all versions up to, and including, 4.15.3. This is due ...

Continue Reading
CVE-2024-6587 SSRF in berriai/litellm

A Server-Side Request Forgery (SSRF) vulnerability exists in berriai/litellm version 1.38.10. This vulnerability allows users to specify the api_base parameter when making requests to POST /chat/compl ...

Continue Reading

Back to Main

Subscribe for the latest news: