The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.10.2 via API. This makes it possible for unauthenticated attackers to obt ...
Continue ReadingFebruary 21, 2024
The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.10.1 via API. This makes it possible for unauthenticated attackers to obt ...
Continue ReadingFebruary 21, 2024
Security Advisory Description A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 ...
Continue ReadingFebruary 21, 2024
All versions of the package github.com/greenpau/caddy-security are vulnerable to Authentication Bypass by Spoofing via the X-Forwarded-For header due to improper input sanitization. An attacker can sp ...
Continue ReadingFebruary 21, 2024
Versions of the package github.com/greenpau/caddy-security before 1.0.42 are vulnerable to Insecure Randomness due to using an insecure random number generation library which could possibly be predict ...
Continue ReadingFebruary 21, 2024
Through a series of API calls and redirects, an attacker-controlled al...Read More ...
Continue ReadingFebruary 21, 2024
The fetch() API and navigation incorrectly shared the same cache, as...Read More ...
Continue ReadingFebruary 21, 2024
Security Advisory Description This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available. Learn more about the Res ...
Continue ReadingFebruary 21, 2024
Back to Main