Gitpod before 2022.11.3 allows XSS because redirection can occur for some protocols outside of the trusted set of three (vscode: vscode-insiders: jetbrains-gateway:).Read More ...
Continue ReadingJune 05, 2023
MarsCTF 1.2.1 has an arbitrary file upload vulnerability in the interface for uploading attachments in the background.Read More ...
Continue ReadingJune 05, 2023
emoncms v11 and later was discovered to contain an information disclosure vulnerability which allows attackers to obtain the web directory path and other information leaked by the server via a crafted ...
Continue ReadingJune 05, 2023
A vulnerability was found in KylinSoft kylin-software-properties on KylinOS. It has been declared as critical. This vulnerability affects the function changedSource. The manipulation leads to improper ...
Continue ReadingJune 05, 2023
A vulnerability was found in KylinSoft kylin-software-properties on KylinOS. It has been rated as critical. This issue affects the function setMainSource. The manipulation leads to os command injectio ...
Continue ReadingJune 05, 2023
A vulnerability classified as critical has been found in KylinSoft youker-assistant on KylinOS. Affected is the function restore_all_sound_file. The manipulation leads to path traversal: '../filedir'. ...
Continue ReadingJune 05, 2023
A vulnerability classified as critical was found in KylinSoft youker-assistant on KylinOS. Affected by this vulnerability is the function delete_file in the library dbus.SystemBus of the component Arb ...
Continue ReadingJune 05, 2023
A vulnerability, which was classified as critical, has been found in IBOS 4.5.5. Affected by this issue is the function actionDel of the file ?r=dashboard/approval/del. The manipulation of the argumen ...
Continue ReadingJune 05, 2023
Back to Main