CVE-2023-5256 - Drupal JSON:API Module May Leak Sensitive Error Backtraces to Anonymous Users
Drupal is one of the world’s most popular free and open-source content management systems (CMS). Its ecosystem has thousands of contributed modules, and
CVE-2023-43876 - Exploiting XSS via the dbhost Field in OctoberCMS v3.4.16 Installation
Cross-Site Scripting (XSS) vulnerabilities are some of the most common and dangerous issues on the web. They allow an attacker to run their own
CVE-2023-43884 - Exploiting a Critical XSS Vulnerability in Subrion v4.2.1 Transactions Panel
Every website running on Subrion v4.2.1 is open to a severe cross-site scripting (XSS) attack, thanks to a bug tracked as CVE-
CVE-2023-43874 - Exploiting Multiple XSS Vulnerabilities in e017 CMS v2.3.2
Update June 2024
This post covers practical insights into CVE-2023-43874, a Cross-Site Scripting (XSS) vulnerability in e017 CMS v2.3.2, exposing
CVE-2023-43873 - Exploiting an XSS in e017 CMS v2.3.2 via the Name Field
On September 2023, security researchers identified a medium-severity Cross-Site Scripting (XSS) vulnerability tracked as CVE-2023-43873 in the open-source e017 CMS,
Episode
00:00:00
00:00:00