Wing FTP Server version 2.3 suffers from a cross site request forgery vulnerability.
ASUS AXSP version 1.02.00 suffers from an asComSvc unquoted service path vulnerability.
WordPress Search Meter plugin version 2.13.2 suffers from a CSV injection vulnerability.
rConfig 3.93 – ‘ajaxAddTemplate.php’ Authenticated Remote Code Execution
WordPress Plugin Appointment Booking Calendar 1.3.34 – CSV Injection
Joomla! Component com_newsfeeds 1.0 – ‘feedid’ SQL Injection
WatchGuard Fireware AD Helper Component 5.8.5.10317 – Credential Disclosure
http://www.takong-sao.go.th/in.txt notified by GH057_5P3C706
Counter Strike: GO .bsp memory control proof of concept exploit.
Sysaid version 20.1.11 b26 suffers from a remote command execution vulnerability.