CVE-2024-25974 - Stored XSS in OpenOlat LMS’s Media Center Exposes All Users
A critical security flaw—CVE-2024-25974—has been discovered in Frentix GmbH’s popular OpenOlat Learning Management System (LMS). The vulnerability allows an authenticated user to
CVE-2024-26318 - Serenity CMS XSS Exploit Through Malicious Email Links
On February 2024, a significant security vulnerability was identified in Serenity CMS (before version 6.8.). Tracked as CVE-2024-26318, this flaw allows attackers to perform
CVE-2023-52381 - Script Injection in Email Module – Exploit Details and How You Can Stay Safe
In late 2023, a notable vulnerability—CVE-2023-52381—surfaced in the widely-used email module of several web applications. This flaw allows attackers to inject malicious scripts
CVE-2024-21395 - Understanding and Exploiting Microsoft Dynamics 365 (On-Premises) Cross-Site Scripting Vulnerability
Microsoft Dynamics 365 is widely used by organizations to manage customer relationships, business processes, and extensive data. However, as with any complex software, vulnerabilities can
CVE-2024-21393 - A Deep Dive into the Microsoft Dynamics 365 Cross-site Scripting (XSS) Vulnerability
In February 2024, security researchers and IT administrators received troubling news concerning a critical cross-site scripting (XSS) vulnerability inside Microsoft Dynamics 365 (on-premises). Cataloged as
Episode
00:00:00
00:00:00