πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
25.8K subscribers
89.2K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ•΄ 'Human Behavior' Security Startup Nets $7M in Seed πŸ•΄

Nudge Security plans a general launch of its cloud-based service later this year.

πŸ“– Read

via "Dark Reading".
β€Ό CVE-2022-24475 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-26891, CVE-2022-26894, CVE-2022-26895, CVE-2022-26900, CVE-2022-26908, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-23974 β€Ό

In 0.9.3 or older versions of Apache Pinot segment upload path allowed segment directories to be imported into pinot tables. In pinot installations that allow open access to the controller a specially crafted request can potentially be exploited to cause disruption in pinot service. Pinot release 0.10.0 fixes this. See https://docs.pinot.apache.org/basics/releases/0.10.0

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-24523 β€Ό

Microsoft Edge (Chromium-based) Spoofing Vulnerability.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27123 β€Ό

Employee Performance Evaluation v1.0 was discovered to contain a SQL injection vulnerability via the email parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27304 β€Ό

Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26900 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26894, CVE-2022-26895, CVE-2022-26908, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26894 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26895, CVE-2022-26900, CVE-2022-26908, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26628 β€Ό

Matrimony v1.0 was discovered to contain a SQL injection vulnerability via the Password parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28115 β€Ό

Online Sports Complex Booking v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28467 β€Ό

Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-27124 β€Ό

Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26912 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26894, CVE-2022-26895, CVE-2022-26900, CVE-2022-26908, CVE-2022-26909.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26909 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26894, CVE-2022-26895, CVE-2022-26900, CVE-2022-26908, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26895 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26894, CVE-2022-26900, CVE-2022-26908, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26891 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26894, CVE-2022-26895, CVE-2022-26900, CVE-2022-26908, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-26908 β€Ό

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-24475, CVE-2022-26891, CVE-2022-26894, CVE-2022-26895, CVE-2022-26900, CVE-2022-26909, CVE-2022-26912.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28116 β€Ό

Online Banking System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.

πŸ“– Read

via "National Vulnerability Database".
β€Ό CVE-2022-28468 β€Ό

Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter.

πŸ“– Read

via "National Vulnerability Database".
πŸ•΄ Developers Increasingly Prioritize Secure Coding πŸ•΄

But "old habits are hard to break," with 48% of developers still shipping code with vulnerabilities.

πŸ“– Read

via "Dark Reading".
⚠ Firefox 99 is out – no major bugs, but update anyway! ⚠

Firefox's four-weekly updates just dropped - here's what you need to know.

πŸ“– Read

via "Naked Security".