🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
CVE-2022-43799

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43809

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43800

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43814

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43818

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43830

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43797

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43828

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43827

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43825

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43821

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43829

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43823

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43826

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43822

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
CVE-2022-43824

To maintain compliance with CNA rules, we have rejected this CVE record because it has not been used.

📖 Read

via "National Vulnerability Database".
👍1
CVE-2023-0028

Cross-site Scripting (XSS) - Stored in GitHub repository linagora/twake prior to 2023.Q1.1200+.

📖 Read

via "National Vulnerability Database".
CVE-2022-45027

perfSONAR before 4.4.6, when performing participant discovery, incorrectly uses an HTTP request header value to determine a local address.

📖 Read

via "National Vulnerability Database".
CVE-2022-37787

An issue was discovered in WeCube platform 3.2.2. A DOM XSS vulnerability has been found on the plugin database execution page.

📖 Read

via "National Vulnerability Database".
CVE-2022-40711

PrimeKey EJBCA 7.9.0.2 Community allows stored XSS in the End Entity section. A user with the RA Administrator role can inject an XSS payload to target higher-privilege users.

📖 Read

via "National Vulnerability Database".
CVE-2022-34322

Multiple XSS issues were discovered in Sage Enterprise Intelligence 2021 R1.1 that allow an attacker to execute JavaScript code in the context of users' browsers. The attacker needs to be authenticated to reach the vulnerable features. An issue is present in the Notify Users About Modification menu and the Notifications feature. A user can send malicious notifications and execute JavaScript code in the browser of every user who has enabled notifications. This is a stored XSS, and can lead to privilege escalation in the context of the application. (Another issue is present in the Favorites tab. The name of a favorite or a folder of favorites is interpreted as HTML, and can thus embed JavaScript code, which is executed when displayed. This is a self-XSS.)

📖 Read

via "National Vulnerability Database".