Tag: NodeJsSecurity

  • Vulnerability Watch No25

    Crafted Images Can Trigger GIMP Memory Corruption • Zyxel Firewall Path Traversal Enables Malicious Config Execution • Zyxel WAX650S Command Injection Exposes Device OS • Node.js HTTP2 Flaw Enables Remote Memory Exhaustion • CustomSounds Path Traversal Exposes Arbitrary Files…

  • Vulnerability Watch No24

    Brace Expansion Bypass Enables Memory Exhaustion • Angular i18n Flaw Turns Translations into JavaScript • Angular Server Rendering Exposes High-Severity XSS • Angular Cache-Key Collision Can Return the Wrong Data • OpenEMR OAuth Flow Bypasses Multi-Factor Authentication…

  • Vulnerability Watch No23

    Hashi Vault JS Flaw Enables Path and Query Injection • Defaults Deep Library Vulnerable to Prototype Pollution • DSSRF DNS Handling Bug Reopens SSRF Paths • Vault Webhook Flaw Can Leak Kubernetes Service Account Tokens • cPanel Database Rename Flaw Enables Root-Context SQL Execution…