CVE-2022-36198
A stored XSS vulnerability was detected on the buspassms/admin/view-enquiry.php script that is prone to hacking when user input is processed by the
CVE-2022-36251 Clinic's Patient Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via patients.php
A remote attacker can inject malicious code into the system via this vector. An attacker can create a patient record with a script that causes
CVE-2022-30287 - Exploiting Arbitrary PHP Object Deserialization in Horde Groupware Webmail Edition
CVE-2022-30287 affects Horde Groupware Webmail Edition up to version 5.2.22. This vulnerability is pretty scary: it allows an attacker to inject reflected data
CVE-2022-1634 After free in the Browser UI of Google Chrome prior to 101.0.4951.64 allowed a remote attacker to exploit heap corruption.
CVE-2018-4878 was discovered by Gary Steele. After the heap corruption occurs, the attacker can force the browser to crash or execute arbitrary code by triggering
CVE-2022-31168 Zulip is an open source team chat tool. In Zulip Server 5.4 and earlier, a member of an organization could craft an API call that grants them administrator privileges.
Zulip teams are encouraged to update their Zulip servers to version 5.5 as soon as possible. An upgrade is simple and quick. Also, be
Episode
00:00:00
00:00:00