Security
Headlines
HeadlinesLatestCVEs

Tag

#firefox

Color Prediction Game 1.0 SQL Injection

Color Prediction Game version 1.0 suffers from a remote SQL injection vulnerability.

Packet Storm
#sql#vulnerability#mac#linux#intel#php#auth#firefox
OVOO Movie Portal CMS 3.3.3 SQL Injection

OVOO Movie Portal CMS version 3.3.3 suffers from a remote SQL injection vulnerability.

Taskhub CRM Tool 2.8.6 SQL Injection

Taskhub CRM Tool version 2.8.6 suffers from a remote SQL injection vulnerability.

FlightPath LMS 4.8.2 Insecure Direct Object Reference

FlightPath LMS version 4.8.2 suffers from an insecure direct object reference vulnerability.

FleetCart Laravel Ecommerce System 1.1.2 Insecure Settings

FleetCart Laravel Ecommerce System version 1.1.2 suffers from an ignored default credential vulnerability.

FixBook Repair Shop Management Tool 2.2 Hash Disclosure

FixBook Repair Shop Management Tool version 2.2 suffers from an information leakage vulnerability.

New Variant of XLoader macOS Malware Disguised as 'OfficeNote' Productivity App

A new variant of an Apple macOS malware called XLoader has surfaced in the wild, masquerading its malicious features under the guise of an office productivity app called "OfficeNote." "The new version of XLoader is bundled inside a standard Apple disk image with the name OfficeNote.dmg," SentinelOne security researchers Dinesh Devadoss and Phil Stokes said in a Monday analysis. "The application

Ubuntu Security Notice USN-6267-3

Ubuntu Security Notice 6267-3 - USN-6267-1 fixed vulnerabilities and USN-6267-2 fixed minor regressions in Firefox. The update introduced several minor regressions. This update fixes the problem. Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. Max Vlasov discovered that Firefox Offscreen Canvas did not properly track cross-origin tainting. An attacker could potentially exploit this issue to access image data from another site in violation of same-origin policy. Alexander Guryanov discovered that Firefox did not properly update the value of a global variable in WASM JIT analysis in some circumstances. An attacker could potentially exploit this issue to cause a denial of service. Mark Brand discovered that Firefox did not properly validate the size of an untrusted input strea...

Fara Melk Estate CMS 1.5.0 Information Disclosure

Fara Melk Estate CMS version 1.5.0 suffers from an information leakage vulnerability.

Evsanati Radyo 1.0 Shell Upload

Evsanati Radyo version 1.0 suffers from a remote shell upload vulnerability.