🛡 Cybersecurity & Privacy 🛡 - News
25.8K subscribers
89.2K links
🗞 The finest daily news on cybersecurity and privacy.

🔔 Daily releases.

💻 Is your online life secure?

📩 lalilolalo.dev@gmail.com
Download Telegram
🕴 Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack 🕴

Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.

📖 Read

via "Dark Reading".
🕴 Bad Actors Will Use Large Language Models — but Defenders Can, Too 🕴

Security teams need to find the best, most effective uses of large language models for defensive purposes.

📖 Read

via "Dark Reading".
🕴 Cybercriminals 'CAN' Steal Your Car, Using Novel IoT Hack 🕴

Your family's SUV could be gone in the night thanks to a headlight crack and hack attack.

📖 Read

via "Dark Reading".
‼ CVE-2023-29236 ‼

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cththemes Outdoor theme <= 3.9.6 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25705 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Go Prayer WP Prayer plugin <= 1.9.6 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25712 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-Buddy Google Analytics Opt-Out plugin <= 2.3.4 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-23885 ‼

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Contact Form plugin <= 8.0.3.1 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2022-34333 ‼

IBM Sterling Order Management 10.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 229698.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25713 ‼

Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Paypal Payments plugin <= 5.7.25 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25041 ‼

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cththemes Monolit theme <= 2.0.6 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-29094 ‼

Auth. (admin+) Stored Cross-site Scripting (XSS) vulnerability in PI Websolution Product page shipping calculator for WooCommerce plugin <= 1.3.20 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-1726 ‼

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Proliz OBS allows Stored XSS for an authenticated user.This issue affects OBS: before 23.04.01.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25716 ‼

Auth (admin+) Stored Cross-Site Scripting (XSS) vulnerability in gqevu6bsiz Announce from the Dashboard plugin <= 1.5.1 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25031 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter plugin <= 2.7.1 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25020 ‼

Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter plugin <= 2.7.1.1 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25711 ‼

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPGlobus WPGlobus Translate Options plugin <= 2.1.0 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25049 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in impleCode eCommerce Product Catalog Plugin for WordPress plugin <= 3.3.4 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-28993 ‼

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Ignazio Scimone Albo Pretorio On Line plugin <= 4.6.1 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25702 ‼

Auth. (admin+) Stored Cross-site Scripting (XSS) vulnerability in Fullworks Quick Paypal Payments plugin <= 5.7.25 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-25464 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in StreamWeasels Twitch Player plugin <= 2.1.0 versions.

📖 Read

via "National Vulnerability Database".
‼ CVE-2023-23994 ‼

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Marcel Bootsman Auto Hide Admin Bar plugin <= 1.6.1 versions.

📖 Read

via "National Vulnerability Database".