gitlab is vulnerable to Authorization Bypasses. This vulnerability occurs due to a flaw in the way that GitLab handles OAuth subscriptions. An attacker can exploit this vulnerability to generate OAuth ...
Continue ReadingAugust 12, 2023
gitlab is vulnerable to Authorization Bypasses. This vulnerability occurs due to a flaw in the way that GitLab handles OAuth subscriptions. An attacker can exploit this vulnerability to generate OAuth ...
Continue ReadingAugust 12, 2023
### Overview urllib.parse is a very basic and widely used basic URL parsing function in various applications. ### Description An issue in the urllib.parse component of Python before v3.11 allows attac ...
Continue ReadingAugust 11, 2023
Last week, there were 29 vulnerabilities disclosed in 24 WordPress Plugins and no WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 18 Vulnerab ...
Continue ReadingAugust 10, 2023
The Realia plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.4.0. This is due to missing nonce validation on the 'process_change_profile_form' functi ...
Continue ReadingAugust 10, 2023
The Absolute Privacy plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.1. This is due to missing nonce validation on the 'abpr_profileShortcode' func ...
Continue ReadingAugust 10, 2023
- ------------------------------------------------------------------------- Debian Security Advisory DSA-5473-1 [email protected] https://www.debian.org/security/ ...
Continue ReadingAugust 09, 2023
# CVE-2021-24356 Simple 301 Redirects by BetterLinks - 2.0.0 â 2...Read More ...
Continue ReadingAugust 09, 2023
## Summary IBM MQ has resolved multiple Angular JS vulnerabilities (CVE-2022-25844, CVE-2023-26116, CVE-2023-26117, CVE-2023-26118, CVE-2022-25869). Angular JS is used in Dashboard Web Console. ## Vul ...
Continue ReadingAugust 09, 2023
## Summary IBM MQ Appliance has resolved multiple AngularJS vulnerabilities (CVE-2023-26117, CVE-2023-26116, CVE-2023-26118, CVE-2022-25869, CVE-2022-25844). ## Vulnerability Details **CVEID: **[CVE-2 ...
Continue ReadingAugust 09, 2023
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access upload-functions of the HTTP API. This might cause certificate errors for SSL-co ...
Continue ReadingAugust 09, 2023