OpenZeppelin Contracts is a library for secure smart contract development. Starting in version 4.0.0 and prior to version 4.9.3, contracts using `ERC2771Context` along with a custom trusted forwarder ...
Continue ReadingAugust 11, 2023
Zoho ManageEngine Applications Manager through 16530 allows reflected XSS while logged in.Read More ...
Continue ReadingAugust 11, 2023
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingAugust 11, 2023
iCMS v7.0.16 was discovered to contain a SQL injection vulnerability via the bakupdata function.Read More ...
Continue ReadingAugust 10, 2023
An attacker can send a specially crafted message to the Wavelink Avalanche Manager, which could result in service disruption or arbitrary code execution. Thanks to a Researcher at Tenable for finding ...
Continue ReadingAugust 10, 2023
HAProxy through 2.0.32, 2.1.x and 2.2.x through 2.2.30, 2.3.x and 2.4.x through 2.4.23, 2.5.x and 2.6.x before 2.6.15, 2.7.x before 2.7.10, and 2.8.x before 2.8.2 forwards empty Content-Length headers ...
Continue ReadingAugust 10, 2023
An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource-based DoS attack. Fixed in version 6.4.1.Read More ...
Continue ReadingAugust 10, 2023
Back to Main