Aggregator
CVE-2022-40000 | FeehiCMS up to 2.1.1 Admin Login Page Username cross site scripting (Issue 64)
CVE-2016-7083 | VMware Workstation/Player up to 9.0.3 on Windows TrueType Font memory corruption (VMSA-2016-0014 / EDB-40398)
Microsoft Addresses Entra ID Token Logging Issue, Alerts to Protect Users
Microsoft has acknowledged a recent issue that triggered widespread alerts in its Entra ID Protection system, flagging user accounts as high risk due to supposed credential leaks on the dark web. The alerts have been attributed to a combination of an internal token logging error and the rollout of a new security feature called MACE […]
The post Microsoft Addresses Entra ID Token Logging Issue, Alerts to Protect Users appeared first on Cyber Security News.
CVE-2022-47560 | ekorCCP/ekorRCI Web Request cleartext transmission
CVE-2023-41993 | Apple iOS/iPadOS unusual condition (FEDORA-2023-a4693c1c98)
CVE-2023-41993 | Apple Safari unusual condition (FEDORA-2023-a4693c1c98)
CVE-2023-43376 | Hoteldruid 3.0.5 /hoteldruid/clienti.php nometipotariffa1 cross site scripting
CVE-2023-43377 | Hoteldruid 3.0.5 visualizza_contratto.php destinatario_email1 cross site scripting
BSidesLV24 – Common Ground – Raiders of the Lost Artifacts: Racing for Hidden Treasures in Public GitHub Repositories
Author/Presenter: Yaron Avital
Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel.
The post BSidesLV24 – Common Ground – Raiders of the Lost Artifacts: Racing for Hidden Treasures in Public GitHub Repositories appeared first on Security Boulevard.