CVE-2023-39008 - Command Injection in OPNsense /api/cron/settings/setJob/ — How Attackers Can Execute System Commands
In July 2023, security researchers uncovered a significant vulnerability in OPNsense — the open-source firewall and routing platform widely used in both professional and home
CVE-2023-39002 - Breaking Down the OPNsense 23.7 XSS Vulnerability in `system_certmanager.php` (with PoC)
CVE-2023-39002 is a recently discovered cross-site scripting (XSS) vulnerability in OPNsense’s system_certmanager.php script. Affecting versions before 23.7, this
CVE-2023-38998 - Open Redirect in OPNsense <23.7 — What It Means and How Attackers Can Exploit It
Security vulnerabilities can sometimes seem complicated, but some are dangerously simple. CVE-2023-38998 is a perfect example. Found in the OPNsense firewall before version
CVE-2023-38208 - Serious Command Injection in Adobe Commerce—Explained
Adobe Commerce (formerly known as Magento) powers thousands of e-commerce stores. In the summer of 2023, a major vulnerability was discovered and patched—CVE-
CVE-2023-4243 - Arbitrary File Upload Vulnerability in FULL – Customer WordPress Plugin Explained (with Exploit Details)
> This long-read post breaks down CVE-2023-4243—a critical flaw found in the FULL – Customer WordPress plugin. We'll walk through
Episode
00:00:00
00:00:00