Skip to content

TechMedia

Header Image
Category

MODERATE

588 Posts

Featured

Posted byWpmaster
[vitess.io/vitess] vitess allows users to create keyspaces that can deny access to already existing keyspaces
Posted byWpmaster
[github.com/answerdev/answer] Answer vulnerable to account takeover because password reset links do not expire
Posted byWpmaster
[thorsten/phpmyfaq] thorsten/phpmyfaq vulnerable to improper access control
Posted byWpmaster
[thorsten/phpmyfaq] thorsten/phpmyfaq vulnerable to stored cross-site scripting (XSS) via updatecategory parameter

[phpxmlrpc/phpxmlrpc] XML-RPC for PHP’s `Wrapper::buildClientWrapperCode` method allows code injection via malicious `$client` argument

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/12/2023

In order for this weakness to be exploited, the following conditions have to apply, at the same time:

method Wrapper::buildClientWrapperCode, or any methods which depend on it, such as Wrapper::wrapXmlrpcServer, Wrapper::wrapXmlrpcMethod or Wrapper::b…

[phpxmlrpc/phpxmlrpc] XML-RPC for PHP’s debugger vulnerable to possible XSS attack

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/12/202301/12/2023

The bundled xml-rpc debugger is susceptible to XSS attacks.
Since the debugger is not designed to be exposed to end users but only to the developers using this library, and in the default configuration it is not exposed to requests from the web, the li…

[dompurify] dompurify vulnerable to Cross-site Scripting

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/12/2023

dompurify prior to version 2.2.3 is vulnerable to a cross-site scripting problem caused by nested headlines.
References

https://github.com/cure53/DOMPurify/releases/tag/2.2.3
https://security.snyk.io/vuln/SNYK-JS-DOMPURIFY-2863266
https://www.vidocsec…

[dompurify] dompurify vulnerable to Cross-site Scripting

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/12/2023

dompurify prior to version 2.2.2 is vulnerable to cross-site scripting when converting from SVG namespace.
References

https://github.com/cure53/DOMPurify/issues/482
https://github.com/cure53/DOMPurify/releases/tag/2.2.2
https://security.snyk.io/vuln/S…

[github.com/zitadel/zitadel] Zitadel RefreshToken invalidation vulnerability

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/12/202301/25/2023

Impact
RefreshTokens is an OAuth 2.0 feature that allows applications to retrieve new access tokens and refresh the user’s session without the need for interacting with a UI.
RefreshTokens were not invalidated when a user was locked or deactivated. The…

[github.com/gotify/server] Reflected XSS in Gotify’s /docs via import of outdated Swagger UI

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/11/2023

Impact
Gotify exposes an outdated instance of the Swagger UI API documentation frontend at /docs which is susceptible to reflected XSS attacks when loading external Swagger config files.
Specifically, the DOMPurify version included with this version of…

[flarum/core] Flarum notifications can leak restricted content

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/11/202301/13/2023

Using the notifications feature, one can read restricted/private content and bypass access checks that would be in place for such content.
The notification-sending component does not check that the subject of the notification can be seen by the receive…

[cargo] Cargo did not verify SSH host keys

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/11/202301/27/2023

The Rust Security Response WG was notified that Cargo did not perform SSH host key verification when cloning indexes and dependencies via SSH. An attacker could exploit this to perform man-in-the-middle (MITM) attacks.
This vulnerability has been assig…

[phoenix_html] phoenix_html allows Cross-site Scripting in HEEx class attributes

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/10/202301/14/2023

tag.ex in Phoenix Phoenix.HTML (aka phoenix_html) before 3.0.4 allows XSS in HEEx class attributes.
References

https://nvd.nist.gov/vuln/detail/CVE-2021-46871
https://github.com/phoenixframework/phoenix_html/commit/62a0139fb716bcdce697f6221244bd81d321…

[net.lingala.zip4j:zip4j] Zip4j Origin Validation Error

  • Posted inMODERATE
  • Posted byWpmaster
  • 01/10/202301/28/2023

Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive. This issue has been fixed in version 2.11.3.
References

https://nvd.nist.gov/vuln/detail/CVE-2023-22899
https://breakingthe3ma.ap…

Posts navigation

Previous Posts 1 … 9 10 11 12 13 … 59 Next Posts
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close