Server-side Request Forgery (SSRF)

cxf-core is vulnerable to server-side request forgery. The vulnerability exists due to the lack of URL encode in MTOM content-id, which allows an attacker to perform SSRF-style attacks on web services ...

Continue Reading
Wordfence Launches Free Vulnerability Database For Commercial Use – And Launches Security Portal

Today we are incredibly excited to announce that Wordfence is launching an entirely free vulnerability database API and web interface, available for commercial use by hosting companies, security organ ...

Continue Reading
Six Charged in Mass Takedown of DDoS-for-Hire Sites

The **U.S. Department of Justice** (DOJ) today seized four-dozen domains that sold "booter" or "stresser" services -- businesses that make it easy and cheap for even non-technical users to launch powe ...

Continue Reading
CVE-2022-31703

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
CVE-2022-31702

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
hutool-json vulnerable to memory exhaustion

hutool-json v5.8.10 was discovered to contain an out of memory error.Read More ...

Continue Reading
Shoplazza 1.1 Cross Site Scripting

Post ContentRead More ...

Continue Reading
Description of the security update for SharePoint Enterprise Server 2016: December 13, 2022 (KB5002321)

None ## Summary This security update resolves a Microsoft SharePoint Server remote code execution vulnerability. To learn more about the vulnerability, see the following security advisories: * [Micr ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: