CVE-2023-23602

The Mozilla Foundation Security Advisory describes this flaw as: A mishandled security check when creating a WebSocket in a WebWorker caused the Content Security Policy connect-src header to be ignore ...

Continue Reading
Debian DSA-5322-1 : firefox-esr – security update

The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-5322 advisory. - An out of date library (libusrsctp) contained vulnerabilities ...

Continue Reading

CVSS3 - HIGH

Slackware Linux 15.0 / current mozilla-firefox Multiple Vulnerabilities (SSA:2023-018-04)

The version of mozilla-firefox installed on the remote host is prior to 102.7.0esr / 109.0. It is, therefore, affected by multiple vulnerabilities as referenced in the SSA:2023-018-04 advisory. - An ...

Continue Reading

CVSS3 - HIGH

Denial Of Service (DoS)

mercurius is vulnerable to Denial of Service (DoS) attacks. A malicious user is able to cause an application crash via sending a malformed packet over `WebSocket` to `/graphql` resulting in Denial of ...

Continue Reading

CVSS3 - HIGH

Mozilla Firefox ESR < 102.7

The version of Firefox ESR installed on the remote Windows host is prior to 102.7. It is, therefore, affected by multiple vulnerabilities as referenced in the mfsa2023-02 advisory. - An out of date ...

Continue Reading

CVSS3 - HIGH

Mozilla Firefox < 109.0

The version of Firefox installed on the remote Windows host is prior to 109.0. It is, therefore, affected by multiple vulnerabilities as referenced in the mfsa2023-01 advisory. - A compromised web c ...

Continue Reading
Web skimmer found on website of Liquor Control Board of Ontario

On January 12, 2023, the Liquor Control Board of Ontario (LCBO) published a [news release]() about a cybersecurity incident, affecting online sales through LCBO.com. It is one of the largest retailers ...

Continue Reading
Security Vulnerabilities fixed in Firefox ESR 102.7 — Mozilla

An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited. Due to the Firefox GTK wrapper code's use of text/plain for drag data and GTK treating all text/plain ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news:
Generated by Feedzy