WP OAuth Server < 4.2.5 – Arbitrary Post Deletion via CSRF

The plugin does not have CSRF check when deleting a client, and does not ensure that the object to be deleted is actually a client, which could allow attackers to make a logged in admin delete arbitra ...

Continue Reading
WP OAuth Server < 4.2.5 – Arbitrary Post Deletion via CSRF

The plugin does not have CSRF check when deleting a client, and does not ensure that the object to be deleted is actually a client, which could allow attackers to make a logged in admin delete arbitra ...

Continue Reading
Jenkins plugins Multiple Vulnerabilities (2023-01-24)

According to their self-reported version numbers, the version of Jenkins plugins running on the remote web server are affected by multiple vulnerabilities: - High Script Security Plugin provides a s ...

Continue Reading

CVSS3 - CRITICAL

Shocking Findings from the 2023 Third-Party App Access Report

[![Third-Party App](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Spoiler Alert: Organizations with 10,000 SaaS users that use ...

Continue Reading
Wordfence Intelligence CE Weekly Vulnerability Report (Feb 13, 2023 to Feb 19, 2023)

Wordfence has curated an industry leading vulnerability database with all known WordPress core, theme, and plugin vulnerabilities known as [Wordfence Intelligence Community Edition](). This database i ...

Continue Reading

CVSS3 - MEDIUM

(RHSA-2023:0777) Critical: OpenShift Container Platform 4.9.56 security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Description of the security update for SharePoint Server Subscription Edition: February 14, 2023 (KB5002353)

None ## Summary This security update resolves a Microsoft SharePoint Server elevation of privilege vulnerability and Microsoft Word remote code execution vulnerability. To learn more about the vulnera ...

Continue Reading

CVSS3 - CRITICAL

Description of the security update for SharePoint Server 2019: February 14, 2023 (KB5002342)

None ## Summary This security update resolves a Microsoft SharePoint Server elevation of privilege vulnerability and Microsoft Word remote code execution vulnerability. To learn more about the vulnera ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: