WebSocket Detected

This is an informational plugin to inform the user that the scanner has detected the usage of WebSockets on the target web...Read More ...

Continue Reading
CVE-2024-23657 Path Traversal: ‘../filedir’ in Nuxt Devtools

Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Nuxt Devtools is missing authentication on the getTextAssetContent RPC function which is vulner ...

Continue Reading
CVE-2024-41889

Multiple Pimax products accept WebSocket connections from unintended endpoints. If this vulnerability is exploited, arbitrary code may be executed by a remote unauthenticated...Read More ...

Continue Reading
Amazon Linux 2023 : mod_http2 (ALAS2023-2024-689)

It is, therefore, affected by a vulnerability as referenced in the ALAS2023-2024-689 advisory. Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, ...

Continue Reading
Path Traversal

@nuxt/devtools is vulnerable to Path Traversal. The vulnerability is due to missing authentication on the getTextAssetContent RPC function and a lack of Origin checks on the WebSocket handler, allowin ...

Continue Reading
Nuxt Devtools has a Path Traversal: ‘../filedir’

Summary Nuxt Devtools is missing authentication on the getTextAssetContent RPC function which is vulnerable to path traversal. Combined with a lack of Origin checks on the WebSocket handler, an atta ...

Continue Reading
Nuxt Devtools has a Path Traversal: ‘../filedir’

Summary Nuxt Devtools is missing authentication on the getTextAssetContent RPC function which is vulnerable to path traversal. Combined with a lack of Origin checks on the WebSocket handler, an atta ...

Continue Reading
CVE-2024-23657

Nuxt is a free and open-source framework to create full-stack web applications and websites with Vue.js. Nuxt Devtools is missing authentication on the getTextAssetContent RPC function which is vulner ...

Continue Reading

Back to Main

Subscribe for the latest news: