CVE HUB ๐Ÿ‘พ
788 subscribers
19.3K links
Github Red team resource push
Github ็บข้˜Ÿ่ต„ๆบๆŽจ้€
Cve/Rce/Exploit/Redteam/ๆผๆดžๅˆฉ็”จ/็บข้˜Ÿ

Channel push 24/7 (real time)
้ข‘้“ๅ…จๅคฉๅ€™ๆŽจ้€(ๅฎžๆ—ถ)
Download Telegram
๐Ÿ‘พCVE SERVICE ๐Ÿท#CVE
Mumber: CVE-2022-0739
Github: https://github.com/destr4ct/CVE-2022-0739
Describe:
The BookingPress WordPress plugin before 1.0.11 fails to properly sanitize user supplied POST data before it is used in a dynamically constructed SQL query via the bookingpress_front_get_category_services AJAX action (available to unauthenticated users), leading to an unauthenticated SQL Injection
๐Ÿ‘พCVE SERVICE ๐Ÿท#CVE
Mumber: CVE-2022-30910
Github: https://github.com/arozx/CVE-2022-30910
Describe:
H3C Magic R100 R100V100R005 was discovered to contain a stack overflow vulnerability via the GO parameter at /goform/aspForm.
** xray ** ๐Ÿ”งTool update
Tools name๏ผšxray
Tools url๏ผšhttps://github.com/chaitin/xray/commit/4f47fb13a2454590309eaf2279ba2c9a3b1150fe
commitUpdate log๏ผš
Fix Python3 Flask bug: ImportError: cannot import name 'escape' from 'jinja2' (/usr/local/lib/python3.9/dist-packages/jinja2/__init__.py) (#1680)

Signed-off-by: DroidKali <DroidKali@users.noreply.github.com>

Signed-off-by: DroidKali <DroidKali@users.noreply.github.com>
Co-authored-by: DroidKali <DroidKali@users.noreply.github.com>