Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-25228: Forums Archive - Candid ATS

CandidATS Version 3.0.0 Beta allows an authenticated user to inject SQL queries in ‘/index.php?m=settings&a=show’ via the ‘userID’ parameter, in ‘/index.php?m=candidates&a=show’ via the 'candidateID’, in ‘/index.php?m=joborders&a=show’ via the ‘jobOrderID’ and ‘/index.php?m=companies&a=show’ via the ‘companyID’ parameter

CVE
#sql#php#auth

Open Source Applicant Tracking System for Recruiters

CandidATS is free and open source Applicant Tracking System for Recruiters. It helps from getting the order from company to placing the candidate. Tracking the interview process can be efficiently managed

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda