Tag
#firefox
Color Prediction Game version 1.0 suffers from a remote SQL injection vulnerability.
OVOO Movie Portal CMS version 3.3.3 suffers from a remote SQL injection vulnerability.
Taskhub CRM Tool version 2.8.6 suffers from a remote SQL injection vulnerability.
FlightPath LMS version 4.8.2 suffers from an insecure direct object reference vulnerability.
FleetCart Laravel Ecommerce System version 1.1.2 suffers from an ignored default credential vulnerability.
FixBook Repair Shop Management Tool version 2.2 suffers from an information leakage vulnerability.
A new variant of an Apple macOS malware called XLoader has surfaced in the wild, masquerading its malicious features under the guise of an office productivity app called "OfficeNote." "The new version of XLoader is bundled inside a standard Apple disk image with the name OfficeNote.dmg," SentinelOne security researchers Dinesh Devadoss and Phil Stokes said in a Monday analysis. "The application
Ubuntu Security Notice 6267-3 - USN-6267-1 fixed vulnerabilities and USN-6267-2 fixed minor regressions in Firefox. The update introduced several minor regressions. This update fixes the problem. Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker could potentially exploit these to cause a denial of service, obtain sensitive information across domains, or execute arbitrary code. Max Vlasov discovered that Firefox Offscreen Canvas did not properly track cross-origin tainting. An attacker could potentially exploit this issue to access image data from another site in violation of same-origin policy. Alexander Guryanov discovered that Firefox did not properly update the value of a global variable in WASM JIT analysis in some circumstances. An attacker could potentially exploit this issue to cause a denial of service. Mark Brand discovered that Firefox did not properly validate the size of an untrusted input strea...
Fara Melk Estate CMS version 1.5.0 suffers from an information leakage vulnerability.
Evsanati Radyo version 1.0 suffers from a remote shell upload vulnerability.