Telegram (API) Cross Site Request Forgery

Telegram (API) suffers from a cross site request forgery vulnerability.

WordPress Appointment Booking Calendar 1.1.24 Escalation / XSS

WordPress Appointment Booking Calendar plugin versions 1.1.24 and below suffer from privilege escalation and cross site scripting vulnerabilities.

Trend Micro Direct Pass Filter Bypass / CSRF

Trend Micro Direct Pass suffers from filter bypass and cross site scripting vulnerabilities.

VLC Media Player 2.2.1 Heap Memory Corruption

VLC Media Player version 2.2.1 suffers from a heap memory corruption vulnerability when handling malformed mp4 files.

WordPress Appointment Booking Calendar 1.1.24 SQL Injection

WordPress Appointment Booking Calendar plugin version 1.1.24 suffers from a remote SQL injection through addslashes.

Horizon HD / WiFi Weak WiFi Passphrase Generation

Horizon HD / WiFi suffers from a weak wifi passphrase generation vulnerability.

Ipswitch MOVEit DMZ 8.1 Authorization Bypass

Ipswitch MOVEit DMZ versions 8.1 and below suffer from an authorization bypass vulnerability.

Ipswitch MOVEit DMZ 8.1 Persistent Cross Site Scripting

Ipswitch MOVEit DMZ versions 8.1 and below suffer from a persistent cross site scripting vulnerability.

Ipswitch MOVEit DMZ 8.1 File ID Enumeration

Ipswitch MOVEit DMZ versions 8.1 and below suffer from a file id enumeration vulnerability.

Ipswitch MOVEit Mobile 1.2.0.962 Cross Site Request Forgery

Ipswitch MOVEit Mobile versions 1.2.0.962 and below suffer from a cross site request forgery vulnerability.