WordPress OAuth Client by DigitialPixies plugin <= 1.1.0 – Cross-Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability discovered by Lana Codes in WordPress OAuth Client by DigitialPixies plugin (versions Read More ...

Continue Reading
WordPress OAuth Client by DigitialPixies plugin <= 1.1.0 – Auth. Stored Cross-Site Scripting (XSS) vulnerability

Auth. Stored Cross-Site Scripting (XSS) vulnerability discovered by Lana Codes in WordPress OAuth Client by DigitialPixies plugin (versions Read More ...

Continue Reading
(RHSA-2022:8057) Important: grafana security, bug fix, and enhancement update

Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. The following packages have been upgraded to a later upstream version: grafana (7.5.1 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Rocket.Chat log information leakage vulnerability

Chat is a set of open source team chat software. Rocket.Chat v4.6.4 and earlier versions contain an information disclosure vulnerability, which stems from OAuth tokens being leaked in plaintext in the ...

Continue Reading

CVSS3 - MEDIUM

Introducing fine-grained personal access tokens for GitHub

Stolen and compromised credentials are the number one cause of data breaches across the industry. GitHub has a long history of protecting developers and enterprises from such threats with security eff ...

Continue Reading
Rocket.Chat Information Disclosure Vulnerability (CNVD-2022-69164)

Rocket.Chat is a set of open source team chat software. Rocket.Chat suffers from an information disclosure vulnerability that stems from the presence of an explicit transmission of sensitive informati ...

Continue Reading

CVSS3 - MEDIUM

Description of the security update for SharePoint Server 2019: October 11, 2022 (KB5002278)

None ## Summary This security update resolves a Microsoft SharePoint Server remote code execution vulnerability. To learn more about the vulnerability, see the following security advisories: * [Mic ...

Continue Reading

CVSS3 - HIGH

Description of the security update for SharePoint Server Subscription Edition: October 11, 2022 (KB5002290)

None ## Summary This security update resolves a Microsoft SharePoint Server remote code execution vulnerability. To learn more about the vulnerability, see the following security advisories: * [Mic ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: