Post ContentRead More ...
Continue ReadingMay 30, 2023
The Object module in Liferay Portal and Liferay DXP does properly isolate objects in difference virtual instances, which allows remote authenticated users in one virtual instance to view objects in a ...
Continue ReadingMay 29, 2023
[]() A critical security vulnerability has been disclosed in the Ope ...
Continue ReadingMay 27, 2023
Multiple cross-site scripting (XSS) vulnerabilities in the Plugin for OAuth 2.0 module's OAuth2ProviderApplicationRedirect class in Liferay Portal allow remote attackers to inject arbitrary web script ...
Continue ReadingMay 26, 2023
A vulnerability in the expo.io framework allows an attacker to take over accounts and steal credentials on an application/website that configured the "Expo AuthSession Redirect Proxy" for social sign- ...
Continue ReadingMay 25, 2023
Grafana is an open-source platform for monitoring and observability. In versions 5.3 until 9.0.3, 8.5.9, 8.4.10, and 8.3.10, it is possible for a malicious user who has authorization to log into a Gra ...
Continue ReadingMay 25, 2023
Grafana is an open-source platform for monitoring and observability. In affected versions when a data source has the Forward OAuth Identity feature enabled, sending a query to that datasource with an ...
Continue ReadingMay 25, 2023
The Object module in Liferay Portal 7.4.3.4 through 7.4.3.48, and Liferay DXP 7.4 before update 49 does properly isolate objects in difference virtual instances, which allows remote authenticated user ...
Continue ReadingMay 24, 2023
Back to Main