Aggregator
Qilin
4 months 3 weeks ago
cohenido
Qilin
4 months 3 weeks ago
cohenido
Qilin
4 months 3 weeks ago
cohenido
Akira
4 months 3 weeks ago
cohenido
SecWiki News 2025-04-07 Review
4 months 3 weeks ago
2025 APT组织研究年鉴 by ourren
MoLing:无依赖的智能体MCP办公自动化助手 by ourren
浙江大学DeepSeek系列专题公开课 by ourren
SecWiki周刊(第579期) by ourren
PrivacySentry: Android隐私合规整改检测工具 by ourren
更多最新文章,请访问SecWiki
MoLing:无依赖的智能体MCP办公自动化助手 by ourren
浙江大学DeepSeek系列专题公开课 by ourren
SecWiki周刊(第579期) by ourren
PrivacySentry: Android隐私合规整改检测工具 by ourren
更多最新文章,请访问SecWiki
Food giant WK Kellogg discloses data breach linked to Clop ransomware
4 months 3 weeks ago
US food giant WK Kellogg Co is warning employees and vendors that company data was stolen during the 2024 Cleo data theft attacks. [...]
Bill Toulas
CVE-2023-6694 | Beaver Themer Plugin up to 1.4.9 on WordPress Shortcode cross site scripting
4 months 3 weeks ago
A vulnerability classified as problematic has been found in Beaver Themer Plugin up to 1.4.9 on WordPress. This affects an unknown part of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2023-6694. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2023-6877 | themeisle RSS Aggregator Plugin up to 4.3.3 on WordPress Content-Type cross site scripting (ID 3012849)
4 months 3 weeks ago
A vulnerability has been found in themeisle RSS Aggregator Plugin up to 4.3.3 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Content-Type Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-6877. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-28661 | FFmpeg Remote Code Execution
4 months 3 weeks ago
A vulnerability was found in FFmpeg and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to Remote Code Execution.
This vulnerability is handled as CVE-2024-28661. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-3048 | Bannerlid Plugin up to 1.1.0 on WordPress cross site scripting
4 months 3 weeks ago
A vulnerability, which was classified as problematic, has been found in Bannerlid Plugin up to 1.1.0 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-3048. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-3076 | MM-email2image Plugin up to 0.2.5 on WordPress cross-site request forgery
4 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in MM-email2image Plugin up to 0.2.5 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-3076. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
5 Non-Human Identity Breaches That Workload IAM Could Have Prevented
4 months 3 weeks ago
5 min readEach breach exploited a gap in how workloads authenticate and access resources.
The post 5 Non-Human Identity Breaches That Workload IAM Could Have Prevented appeared first on Aembit.
The post 5 Non-Human Identity Breaches That Workload IAM Could Have Prevented appeared first on Security Boulevard.
Dan Kaplan
CVE-2011-10006 | GamerZ WP-PostRatings up to 1.64 wp-postratings.php cross site scripting
4 months 3 weeks ago
A vulnerability was found in GamerZ WP-PostRatings up to 1.64. It has been classified as problematic. This affects an unknown part of the file wp-postratings.php. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2011-10006. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2014-125111 | namithjawahar Wp-Insert up to 2.0.8 cross site scripting
4 months 3 weeks ago
A vulnerability was found in namithjawahar Wp-Insert up to 2.0.8 and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2014-125111. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-31255 | ELEXtensions ELEX WooCommerce Dynamic Pricing and Discounts Plugin cross site scripting
4 months 3 weeks ago
A vulnerability classified as problematic was found in ELEXtensions ELEX WooCommerce Dynamic Pricing and Discounts Plugin up to 2.1.2 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-31255. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-31256 | WebinarPress Plugin up to 1.33.9 on WordPress cross site scripting
4 months 3 weeks ago
A vulnerability was found in WebinarPress Plugin up to 1.33.9 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-31256. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-22155 | Automattic WooCommerce Plugin up to 8.5.2 on WordPress cross-site request forgery
4 months 3 weeks ago
A vulnerability was found in Automattic WooCommerce Plugin up to 8.5.2 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is handled as CVE-2024-22155. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-31236 | WP Royal Royal Elementor Addons Plugin up to 1.3.93 on WordPress cross site scripting
4 months 3 weeks ago
A vulnerability was found in WP Royal Royal Elementor Addons Plugin up to 1.3.93 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-31236. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-31344 | Phpbits Creative Studio Easy Login Styler Plugin up to 1.0.6 on WordPress cross site scripting
4 months 3 weeks ago
A vulnerability classified as problematic was found in Phpbits Creative Studio Easy Login Styler Plugin up to 1.0.6 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-31344. The attack can be initiated remotely. There is no exploit available.
vuldb.com