🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
‼ CVE-2023-1665 ‼

Improper Restriction of Excessive Authentication Attempts in GitHub repository linagora/twake prior to 0.0.0.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-48357 ‼

Some products have the double fetch vulnerability. Successful exploitation of this vulnerability may cause denial of service (DoS) attacks to the kernel.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40595 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40592 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40587 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40599 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40594 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-48346 ‼

The HwContacts module has a logic bypass vulnerability. Successful exploitation of this vulnerability may affect confidentiality.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-26924 ‼

LLVM a0dab4950 has a segmentation fault in mlir::outlineSingleBlockRegion.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40586 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40589 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-48352 ‼

Some smartphones have data initialization issues. Successful exploitation of this vulnerability may cause a system panic.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-40577 ‼

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2022. Notes: none.

📖 Read

via "National Vulnerability Database".
âš  Apple patches everything, including a zero-day fix for iOS 15 users âš 

Got an older iPhone that can't run iOS 16? You've got a zero-day to deal with! That super-cool Studio Display monitor needs patching, too.

📖 Read

via "Naked Security".
🕴 How CISOs Can Reduce the Danger of Using Data Brokers 🕴

Without proof that it was collected legally, purchased data can threaten an enterprise's security compliance and may expose the company to litigation.

📖 Read

via "Dark Reading".
‼ CVE-2022-45825 ‼

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in iThemes WPComplete plugin <= 2.9.2 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-46855 ‼

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WP Darko Responsive Pricing Table plugin <= 5.1.6 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25704 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Mehjabin Orthi Interactive SVG Image Map Builder plugin <= 1.0 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-46863 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Event Manager plugin <= 9.6.4 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-47170 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin <= 1.5.48 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-46848 ‼

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Themeisle Visualizer: Tables and Charts Manager for WordPress plugin <= 3.9.1 versions.

📖 Read

via "National Vulnerability Database".