CVE-2022-42340

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Input Validation vulnerability that could result in arbitrary file system read. Exploitation of ...

Continue Reading

CVSS3 - HIGH

CVE-2022-42341

Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could result in arbitra ...

Continue Reading

CVSS3 - HIGH

CVE-2022-42342

Adobe Acrobat Reader versions 22.002.20212 (and earlier) and 20.005.30381 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attack ...

Continue Reading

CVSS3 - MEDIUM

CVE-2022-40684

** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this c ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Metasploit Wrap-Up

## Spring Cloud Gateway RCE ![Metasploit Wrap-Up](https://blog.rapid7.com/content/images/2022/10/metasploit-blog-banner-3-small.png) This week, a new [module]() that exploits a code injection vulnerab ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

CVE-2022-32177

In "Gin-Vue-Admin", versions v2.5.1 through v2.5.3beta are vulnerable to Unrestricted File Upload that leads to execution of javascript code, through the 'Normal Upload' functionality to the Media Lib ...

Continue Reading

CVSS3 - CRITICAL

Updated lighttpd packages fix security vulnerability

In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the ser ...

Continue Reading

CVSS3 - HIGH

CVE-2022-37208

JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.Re ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: