Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-40705

Stored cross-site scripting vulnerability in Map setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.

CVE
#xss#vulnerability#web#pdf#auth

%PDF-1.7 %���� 1 0 obj <>/Metadata 2236 0 R/ViewerPreferences 2237 0 R>> endobj 2 0 obj <> endobj 3 0 obj <>/ExtGState<>/Font<>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/MediaBox[ 0 0 612 792] /Contents 4 0 R/Group<>/Tabs/S/StructParents 0>> endobj 4 0 obj <> stream x��[_o�67�����6�ER�CQ NRLJ:�َS�탼��E׻�$’ȡ�f���^�+uW��������p��fH�����u:)�O?��.�tr�]���������Oқ�<-������e���g�U���3;x����E�������t�B�C)��K�4�,�vw>���;2Lx Y��G*R\�7&w�;�Gw�M����Q x��%_��I�)��;�&Bv~��#�<܉C�Bf�� �9�� >

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907