Request-Baskets v1.2.1 – Server-side request forgery Vulnerability

Post ContentRead More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Exploit for Server-Side Request Forgery in Rbaskets Request Baskets

# CVE-2023-27163 > Request-Baskets v1.2.1 - Server-side reques...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

CVE-2023-4293

The Premium Packages - Sell Digital Products Securely plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.7.4 due to insufficient restriction on the 'wpdmpp_ ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-3452

The Canto plugin for WordPress is vulnerable to Remote File Inclusion in versions up to, and including, 3.0.4 via the 'wp_abspath' parameter. This allows unauthenticated attackers to include and execu ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Authorization Bypass

gitlab is vulnerable to Authorization Bypasses. This vulnerability occurs due to a flaw in the way that GitLab handles GraphQL mutations. An attacker can exploit this vulnerability to perform Git acti ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Cross-Site Request Forgery (CSRF)

gitlab is vulnerable to Cross-Site Request Forgery (CSRF). The vulnerability exists in the GraphQL API, allowing an attacker to call mutations as the victimRead More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Information Disclosure

gitlab is vulnerable to Information Disclosure. This vulnerability occurs due to a flaw in the way that GitLab handles GraphQL queries. An attacker can exploit this vulnerability to access project det ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Cross-Site Leak

gitlab is vulnerable to Cross-Site Leak. The vulnerability exists in the OAuth flow, allowing an attacker to leak an OAuth access token by getting the victim to visit a malicious page with SafariRead ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: