Sylius is an Open Source eCommerce Framework on Symfony. A security vulnerability was discovered in the /api/v2/shop/adjustments/{id} endpoint, which retrieves order adjustments based on incremental i ...
Continue ReadingJuly 17, 2024
Impact A security vulnerability was discovered in the /api/v2/shop/adjustments/{id} endpoint, which retrieves order adjustments based on incremental integer IDs. The vulnerability allows an attacker t ...
Continue ReadingJuly 17, 2024
Summary Vulnerability contained within OpenSSL (a 3rd party component) was addressed in the IBM MaaS360 VPN Module. Vulnerability Details ** CVEID: CVE-2024-4741 DESCRIPTION: **OpenSSL could allow a ...
Continue ReadingJuly 17, 2024
A vulnerability in the authentication system of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to change the password of any user, including adminis ...
Continue ReadingJuly 17, 2024
The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin for WordPress is vulnerable to unauthorized API access due to a missing ...
Continue ReadingJuly 17, 2024
age is a file encryption tool, library, and format. It lets you encrypt files to "recipients" and decrypt them with "identities". $ age-keygen -o key.txt Public key ...
Continue ReadingJuly 17, 2024
A vulnerability in APIML Spring Cloud Gateway which leverages user privileges by unexpected signing proxied request by Zowe's client certificate. This allows access to a user to the endpoints req ...
Continue ReadingJuly 17, 2024
A vulnerability in APIML Spring Cloud Gateway which leverages user privileges by unexpected signing proxied request by Zowe's client certificate. This allows access to a user to the endpoints req ...
Continue ReadingJuly 17, 2024
Back to Main