[SECURITY] Fedora 37 Update: golang-github-projectdiscovery-chaos-client-0.4.0-3.fc37
Go client to communicate with Chaos DNS API.Read More ...
Continue ReadingMarch 08, 2023
[SECURITY] Fedora 37 Update: golang-github-projectdiscovery-chaos-client-0.4.0-3.fc37
Go client to communicate with Chaos DNS API.Read More ...
Continue ReadingMarch 08, 2023
EulerOS 2.0 SP11 : containerd (EulerOS-SA-2023-1421)
According to the versions of the containerd package installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : - containerd is an open source container run ...
Continue ReadingMarch 07, 2023
SUSE SLES15 Security Update : mariadb (SUSE-SU-2023:0631-1)
The remote SUSE Linux SLES15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0631-1 advisory. - Vulnerability in the MySQL Server product ...
Continue ReadingMarch 07, 2023
Directus vulnerable to Server-Side Request Forgery On File Import
### Summary Directus versions (encodeURL(importURL), { responseType: 'stream', }); } catch (err: any) { logger.warn(err, `Couldn't fetch file from url "${importURL}"`); throw new S ...
Continue ReadingMarch 06, 2023
Exploit for Allocation of Resources Without Limits or Throttling in Google Android
# CVE-2022-20494 [Download as APK](https://github.com/Supersoni...Read More ...
Continue ReadingMarch 03, 2023
Exploit for CVE-2023-23752
## CVE-2023-23752 Joomla æªææè®¿é®æ¼æ´ CVE-2023-23752 ## æ¼æ´æè¿° Joomlaæ¯...Read More ...
Continue ReadingMarch 01, 2023
CVE-2022-45137
The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that targets the users browser. This leads to a limited impact of confidentiality an ...
Continue ReadingFebruary 27, 2023
CVE-2022-45139
A CORS Misconfiguration in the web-based management allows a malicious third party webserver to misuse all basic information pages on the webserver. In combination with CVE-2022-45138 this could lead ...
Continue ReadingFebruary 27, 2023
Wordfence Intelligence CE Weekly Vulnerability Report (Feb 13, 2023 to Feb 19, 2023)
Wordfence has curated an industry leading vulnerability database with all known WordPress core, theme, and plugin vulnerabilities known as [Wordfence Intelligence Community Edition](). This database i ...
Continue ReadingFebruary 23, 2023
Wordfence Intelligence CE Weekly Vulnerability Report (Feb 13, 2023 to Feb 19, 2023)
Wordfence has curated an industry leading vulnerability database with all known WordPress core, theme, and plugin vulnerabilities known as [Wordfence Intelligence Community Edition](). This database i ...
Continue ReadingFebruary 23, 2023