In Liferay Portal 7.3.0 and earlier, and Liferay DXP 7.2 and earlier the default configuration does not require users to verify their email address, which allows remote attackers to create accounts us ...
Continue ReadingMay 24, 2023
This vulnerability exposes a network port in minikube running on macOS with Docker driver that could enable unexpected remote access to the minikube container.Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Viadat Creations Store Locator for WordPress with Google Maps â LotsOfLocales plugin Read More ...
Continue ReadingMay 24, 2023
Pattern Redirects in Liferay Portal 7.4.3.48 through 7.4.3.76, and Liferay DXP 7.4 update 48 through 76 allows regular expressions that are vulnerable to ReDoS attacks to be used as patterns, which al ...
Continue ReadingMay 24, 2023
This vulnerability enables ssh access to minikube container using a default password.Read More ...
Continue ReadingMay 24, 2023
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in chuyencode CC Custom Taxonomy plugin Read More ...
Continue ReadingMay 24, 2023
Cross-Site Request Forgery (CSRF) vulnerability in Mathieu Chartier WordPress WP-Advanced-Search plugin Read More ...
Continue ReadingMay 24, 2023
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingMay 24, 2023
Back to Main