CVE-2022-1884 - Remote Command Execution in Gogs ≤.12.7 on Windows via Malicious File Upload
CVE-2022-1884 is a serious vulnerability discovered in Gogs, a popular self-hosted Git service. Found in all versions up to and including .12.
CVE-2021-3838 - PHAR Deserialization Vulnerability in DomPDF Explained
CVE-2021-3838 is a critical vulnerability discovered in DomPDF versions before 2... This flaw allows attackers to trigger PHP Object Injection through _PHAR deserialization_
CVE-2024-10793 - How a WordPress Plugin Flaw Exposed Admins to Dangerous Stored XSS Attacks
WordPress is the world's most popular content management system, powering over 40% of all websites. Plugins make WordPress hugely flexible, but they introduce
CVE-2024-10924 - Auth Bypass in Really Simple Security Plugins Lets Hackers Impersonate Any WordPress User
CVE-2024-10924 is a newly discovered vulnerability in the popular Really Simple Security plugins (Free, Pro, and Pro Multisite) for WordPress. This serious flaw
CVE-2024-11120 - Unauthenticated OS Command Injection in End-of-Life GeoVision Devices Exploited in the Wild
GeoVision, known globally for its video surveillance products, has left a critical vulnerability in some of its End-of-Life (EOL) devices. This flaw, identified
Episode
00:00:00
00:00:00