CVE-2023-46967 - Cross-Site Scripting in osTicket 1.18. sanitize Function — Detailed Exploit & Analysis
A new vulnerability, CVE-2023-46967, has been found in the popular open source help desk software, osTicket. This flaw impacts versions up to 1.18. and
CVE-2024-25973 - Stored Cross-Site Scripting in Frentix OpenOlat LMS – How Attackers Can Compromise Your Learning Platform
Frentix GmbH OpenOlat is a popular Learning Management System (LMS) for schools, universities, and enterprises across the world. In early 2024, researchers discovered a major
CVE-2024-25974 - Stored XSS in OpenOlat LMS’s Media Center Exposes All Users
A critical security flaw—CVE-2024-25974—has been discovered in Frentix GmbH’s popular OpenOlat Learning Management System (LMS). The vulnerability allows an authenticated user to
CVE-2024-26318 - Serenity CMS XSS Exploit Through Malicious Email Links
On February 2024, a significant security vulnerability was identified in Serenity CMS (before version 6.8.). Tracked as CVE-2024-26318, this flaw allows attackers to perform
CVE-2023-52381 - Script Injection in Email Module – Exploit Details and How You Can Stay Safe
In late 2023, a notable vulnerability—CVE-2023-52381—surfaced in the widely-used email module of several web applications. This flaw allows attackers to inject malicious scripts
Episode
00:00:00
00:00:00