The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attacke ...
Continue ReadingNovember 12, 2024
The python-jwcrypto package provides Python implementations of the JSON Web Key (JWK), JSON Web Signature (JWS), JSON Web Encryption (JWE), and JSON Web Token (JWT) JOSE (JSON Object Signing and Encry ...
Continue ReadingNovember 12, 2024
Bad documentation of error handling in ParseWithClaims may lead to dangerous situations in...Read More ...
Continue ReadingNovember 12, 2024
CVE-2024-47062 This PoC shows how an SQL Injection vulnerability in Navidrome (CVE-2024-47062) can be exploited to gain admin access. It explains how SQL Injection can reveal sensitive data, how to u ...
Continue ReadingNovember 12, 2024
The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attacke ...
Continue ReadingNovember 09, 2024
The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attacke ...
Continue ReadingNovember 09, 2024
The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attacke ...
Continue ReadingNovember 09, 2024
Software CE21 Suite Type Plugin Vulnerable versions <= 2.2.0 Fixed in N/A OWASP Top 10 A4: Insecure Design Classification Sensitive Data Exposure CVE CVE-2024-10285 Patch priority High CVS ...
Continue ReadingNovember 09, 2024
Back to Main