WordPress version 5.2.4 fails to validate an origin header.
WordPress version 5.2.4 fails to validate an origin header.
Craft CMS versions up to 3.1.7 are missing rate limiting on password validations.
JavaScriptCore – GetterSetter Type Confusion During DFG Compilation
WMV to AVI MPEG DVD WMV Convertor 4.6.1217 – Denial of Service
iSeeQ Hybrid DVR WH-H4 2.0.0.P – (get_jpeg) Stream Disclosure
Citrix StoreFront Server 7.15 – XML External Entity Injection
Ajenti 2.1.31 – Remote Code Exection (Metasploit)
ham3d version 1.1 suffers from information disclosure and default credential vulnerabilities.
ClonOs WEB UI version 19.09 suffers from an improper access control vulnerability.
Sahi Pro version 8.x suffers from a reflective cross site scripting vulnerability.