Cross-Site WebSocket Hijacking

HTML5 WebSockets allow developers to create bi-directionnal communication channels between clients (usually web browsers) and servers. To initialize the communication, the WebSocket protocol requires ...

Continue Reading
openSUSE 15 Security Update : etcd (openSUSE-SU-2025:0003-1)

The remote openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2025:0003-1 advisory. Update to version 3.5.12: * Bump golang.org/x ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

CVE-2024-55591 A Fortinet FortiOS Authentication Bypass Vulnerable Behaviour Detection Detection in Action ``` python CVE-2024-55591-check.py --target 192.168.1.10 --port 443 __ _ ...

Continue Reading
Exploit for Server-Side Request Forgery in Havocframework Havoc

CVE-2024-41570 | Havoc C2 SSRF with RCE | Automated Reverse Shell Exploit via WebSocket This project provides a Python-based proof-of-concept (PoC) script to exploit a vulnerable WebSocket-based servi ...

Continue Reading
Exploit for Authentication Bypass Using an Alternate Path or Channel in Fortinet Fortiproxy

CVE-2024-55591 A Fortinet FortiOS Authentication Bypass Vulnerable PoC Description Use this poc,you can bypass authentication and see system log USEAGE sysirq@sysirq-machine:~/Work/Fortinet/FortiGate ...

Continue Reading
CVE-2025-24010

Vite is a frontend tooling framework for javascript. Vite allowed any websites to send any requests to the development server and read the response due to default CORS settings and lack of validation ...

Continue Reading
CVE-2025-24010 Vite allows any websites to send any requests to the development server and read the response

Vite is a frontend tooling framework for javascript. Vite allowed any websites to send any requests to the development server and read the response due to default CORS settings and lack of validation ...

Continue Reading
CVE-2025-24010

Vite is a frontend tooling framework for javascript. Vite allowed any websites to send any requests to the development server and read the response due to default CORS settings and lack of validation ...

Continue Reading

Back to Main

Subscribe for the latest news: