CVE-2023-38089 - Understanding the Kofax Power PDF clearInterval Out-Of-Bounds Write RCE Vulnerability
In 2023, security researchers discovered a serious vulnerability affecting Kofax Power PDF, a widely used PDF reader and editor. This vulnerability is identified as CVE-
CVE-2023-37327 - GStreamer FLAC File Parsing Integer Overflow RCE Exploit Deep Dive
A major security bug tracked as CVE-2023-37327 was discovered in the popular multimedia framework GStreamer, affecting the way it handles FLAC audio files.
CVE-2023-37328 - Exploiting a Heap-based Buffer Overflow in GStreamer’s PGS File Parsing
TL;DR:
A critical vulnerability, CVE-2023-37328 (ZDI-CAN-20994), was discovered in GStreamer’s handling of PGS subtitle files. Insufficient validation of user-
CVE-2024-3295 - How a WordPress Profile Picture Bug Can Let Hackers Delete Your Files
In April 2024, a critical vulnerability surfaced in the widely-used WordPress plugin User Registration – Custom Registration Form, Login Form, and User Profile (up to
CVE-2024-2876 - Unauthenticated SQL Injection in Icegram Express “Email Subscribers” WordPress Plugin
CVE-2024-2876 is a critical security vulnerability found in the popular “Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce”
Episode
00:00:00
00:00:00