# Description File Upload Restriction Bypass leading to Stored XSS Vulnerability, by leveraging file extension **vbhtm, vbhtml, soap, even any extension ends with html (e.g. aahtml, bbhtml)** # Proof ...
Continue ReadingMay 30, 2022
USN-5300-1 fixed vulnerabilities in PHP. This update provides the corresponding updates for Ubuntu 21.10. Original advisory details: It was discovered that PHP incorrectly handled certain scripts. An ...
Continue ReadingMay 30, 2022
USN-5300-1 fixed vulnerabilities in PHP. This update provides the corresponding updates for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. Original advisory details: It was discovered that PHP incorrectly han ...
Continue ReadingMay 30, 2022
The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2022:0679-1 advisory. - An issue was discovered in PHP 7.3.x befor ...
Continue ReadingMay 30, 2022
For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.Read More ...
Continue ReadingMay 30, 2022
Found **brick-icy-soap[.]glitch.me** in [RST Threat Feed](https...Read More ...
Continue ReadingMay 30, 2022
### Description A flaw was found in keycloak, where the default ECP binding flow allows other authentication flows to be bypassed. By exploiting this behavior, an attacker can bypass the MFA authentic ...
Continue ReadingMay 30, 2022
## Summary WebSphere Application Server is shipped as a component of IBM InfoSphere Global Name Management. Information about a security vulnerability affecting WebSphere Application Server has been p ...
Continue ReadingMay 30, 2022
Back to Main