Tag: CodeInjection

  • Vulnerability Watch No68

    Critical cjose JWE Flaw Exposes Encrypted Data • cjose AES Key Wrap Bug Enables Heap Corruption • Maravel JWT Cache Issue Allows Token Replay • OPNsense NTP Module Bug Allows Root File Writes • n8n Expression Engine Flaw Risks Code Execution…

  • Vulnerability Watch No50

    GL.iNet Routers Hit by Remote NAS Command Injection • Public Exploit Targets Edimax WAN Command Injection • Edimax Access Point Command Injection Exploit Goes Public • Critical ipTIME Authentication Bypass Has Public Exploit • Planet9 File Permissions Enable SYSTEM Privilege Escalation…

  • Vulnerability Watch No37

    Discourse Rich Text Editor Flaw Enables Stored XSS • Multicluster Global Hub Flaw Lets Compromised Hubs Falsify Data • Malicious Git Config Can Trigger Code Execution in Goose Review • SPIP SQLite Installations Exposed to Authenticated Command Execution • Malicious use-context-selector Commits Compromised Developer Machines…

  • Vulnerability Watch No2

    Remote Buffer Overflow in Shibby Tomato Scheduler • Remote Stack Overflow Found in Shibby Tomato • Out-of-Bounds Write Threatens Shibby Tomato Routers • Directory Traversal Bug Hits VMware Avi Load Balancer • Privilege Escalation Can Lead to Remote Code Execution…