The Lana Text to Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lana_text_to_image' and 'lana_text_to_img' shortcode in versions up to, and including, 1.0.0 due to in ...
Continue ReadingJune 24, 2023
The Beautiful Cookie Consent Banner for WordPress is vulnerable to Stored Cross-Site Scripting via the 'nsc_bar_content_href' parameter in versions up to, and including, 2.10.1 due to insufficient inp ...
Continue ReadingJune 24, 2023
The MStore API plugin for WordPress is vulnerable to Unauthenticated Blind SQL Injection via the 'id' parameter in versions up to, and including, 4.0.1 due to insufficient escaping on the user supplie ...
Continue ReadingJune 24, 2023
## I like to MOVEit, MOVEit, We like to MOVEit! ![Metasploit Weekly Wrap-Up](https://blog.rapid7.com/content/images/2023/06/metasploit-sky.png) Party hard just like it's Mardi Gras! [bwatters-r7]() de ...
Continue ReadingJune 23, 2023
None ## Summary This security update resolves a Microsoft SharePoint Server elevation of privilege vulnerability, Microsoft SharePoint denial of service vulnerability, and Microsoft SharePoint Server ...
Continue ReadingJune 23, 2023
## Summary Google OAuth Client Library for Java as used by IBM QRadar SIEM is vulnerable to verification bypass. IBM QRadar SIEM has addressed the applicable vulnerability. ## Vulnerability Details ** ...
Continue ReadingJune 23, 2023
## Summary Vulnerability in Apache Kafka allow a remote authenticated attacker to execute arbitrary code may affect IBM Spectrum Control. ## Vulnerability Details ** CVEID: **[CVE-2023-25194]() ** DES ...
Continue ReadingJune 23, 2023
Back to Main