Subscribe via feed.
Archive for January, 2023

crewjam/saml Signature Bypass

Posted by deepcore under exploit (No Respond)

The crewjam/saml go library is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements.

Chrome Synchronous Mojo Use-After-Free

Posted by deepcore under exploit (No Respond)

A design flaw in the Chrome Synchronous Mojo message handling introduces unexpected reentrancy and allows for multiple use-after-free vulnerabilities.

Packet Storm New Exploits For December, 2022

Posted by deepcore under exploit (No Respond)

This archive contains all of the 82 exploits added to Packet Storm in December, 2022.

Packet Storm New Exploits For 2022

Posted by deepcore under exploit (No Respond)

Complete comprehensive archive of all 1,384 exploits added to Packet Storm in 2022.

Packet Storm New Exploits For 2022

Posted by deepcore under exploit (No Respond)

Complete comprehensive archive of all 1,384 exploits added to Packet Storm in 2022.