An issue in Vypor Attack API System v.1.0 allows a remote attacker to execute arbitrary code via the user GET...Read More ...
Continue ReadingSeptember 04, 2024
The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email...Read More ...
Continue ReadingSeptember 04, 2024
Incorrect use of privileged API in DualDarManagerProxy prior to SMR Sep-2024 Release 1 allows local attackers to access privileged APIs related to knox without proper...Read More ...
Continue ReadingSeptember 04, 2024
Incorrect use of privileged API in UniversalCredentialManager prior to SMR Sep-2024 Release 1 allows local attackers to access privileged API related to...Read More ...
Continue ReadingSeptember 04, 2024
The PixelYourSite – Your smart PIXEL (TAG) & API Manager and the PixelYourSite PRO plugins for WordPress are vulnerable to Sensitive Information Exposure in all versions up to, and including ...
Continue ReadingSeptember 04, 2024
The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to privilege escalation/de-escalation and account takeover due to an insufficient capa ...
Continue ReadingSeptember 04, 2024
The Bare Metal Operator (BMO) implements a Kubernetes API for managing bare metal hosts in Metal3. The BareMetalHost (BMH) CRD allows the userData, metaData, and networkData for the provisioned host t ...
Continue ReadingSeptember 04, 2024
Impact The Bare Metal Operator (BMO) implements a Kubernetes API for managing bare metal hosts in Metal3. The BareMetalHost (BMH) CRD allows the userData, metaData, and networkData for the provisioned ...
Continue ReadingSeptember 04, 2024
Back to Main