CVE-2022-36059 - How Malicious Events Can Break Your Matrix Client with matrix-js-sdk
The online chat world is powered by various protocols, and the Matrix protocol is one of the most popular for secure, decentralized messaging. If you
CVE-2023-0326 - Leaked Authorization Headers in GitLab DAST API Scanner – What Happened and How To Stay Safe
If you’re using GitLab’s DAST (Dynamic Application Security Testing) API Scanner—especially if your version falls between 1.6.50 and before 2.
CVE-2023-22247 - XML Injection in Adobe Commerce Leads to Arbitrary File System Read (Explained)
CVE-2023-22247 is a serious security vulnerability discovered in Adobe Commerce, previously known as Magento. This flaw affects versions 2.4.4-p2 (and
CVE-2023-28859 - Redis-py Async Leaky Connections – What Happened, How to Exploit, and How to Fix
In early 2023, a troubling vulnerability called CVE-2023-28859 shook users of the popular Python Redis client, redis-py. If you’re running redis-
CVE-2023-20906 - Silent Permission Grant Exploit in Android Target SDK Updates
In early 2023, a significant vulnerability was found in the Android OS, affecting several versions from Android 11 up to the latest Android 13. This
Episode
00:00:00
00:00:00