WSO2 Identity Server Vulnerable to XSS and CSRF Attacks

WSO2 Identity Server Vulnerable to XSS and CSRF Attacks

Proof-of-concept exploit code published for each issue

WordPress 4.2.2 Fixes DOM-Based XSS Bug Affecting Millions of Websites

WordPress 4.2.2 Fixes DOM-Based XSS Bug Affecting Millions of Websites

Flaw can be repaired manually, bug is exploited in the wild

Millions of WordPress Websites Susceptible to Hijack Attacks

Millions of WordPress Websites Susceptible to Hijack Attacks

Attacks recorded before the disclosure of the vulnerability

Stored XSS Bug in eBay Messages Still Unpatched a Year After Reporting, PoC Available

Stored XSS Bug in eBay Messages Still Unpatched a Year After Reporting, PoC Available

Company refuses to offer the researcher info on glitch fix

WordPress 4.2.1 Patches Zero-Day Affecting All Previous Versions

WordPress 4.2.1 Patches Zero-Day Affecting All Previous Versions

Updating should be at the top of the priority list

WordPress 4.2 Affected by Zero-Day Stored XSS, PoC Available <em>Updated</em>

WordPress 4.2 Affected by Zero-Day Stored XSS, PoC Available Updated

Most popular WordPress versions are currently affected

Google Analytics by Yoast Security Patch Fixes Stored XSS

Google Analytics by Yoast Security Patch Fixes Stored XSS

Yoast downplays severity of its Google Analytics update

WordPress 4.1.2 Fixes Critical XSS Flaw

WordPress 4.1.2 Fixes Critical XSS Flaw

Developers address multiple security problems

Highly Popular WordPress Plugins Vulnerable to XSS Attacks

Highly Popular WordPress Plugins Vulnerable to XSS Attacks

Admins should update all WordPress components

Multiple Flaws Found in Motorola’s Surfboard SBG6580 Cable Modem

Multiple Flaws Found in Motorola’s Surfboard SBG6580 Cable Modem

Attack exploits backdoor support account, CSRF and XSS flaws

Stored XSS Glitch in WP-Super-Cache May Affect over 1 Million WordPress Sites

Stored XSS Glitch in WP-Super-Cache May Affect over 1 Million WordPress Sites

Attackers can gain complete control of the website

Stored XSS Found in Yoast’s Google Analytics for WordPress

Stored XSS Found in Yoast’s Google Analytics for WordPress

Non-severe issues, can be exploited via targeted attacks

Over 60% of Popular Android Mobile Dating Apps Are Vulnerable

Over 60% of Popular Android Mobile Dating Apps Are Vulnerable

Seeking romance can lead to courting from crooks

XFO Flaw in Play Store Web App Domain Allows Remote Code Execution

XFO Flaw in Play Store Web App Domain Allows Remote Code Execution

Android JellyBean and earlier are affected

Almost All About.com Links Vulnerable to XSS, XFS Attacks

Almost All About.com Links Vulnerable to XSS, XFS Attacks

Researcher created his own tool to test the links

Same-Origin Policy Bypassed in Internet Explorer <em>UPDATED</em>

Same-Origin Policy Bypassed in Internet Explorer UPDATED

Proof-of-concept works with the latest builds of the browser

Google Apps Admin Panel Falls for XSS, Issue Researcher Gets $5,000

Google Apps Admin Panel Falls for XSS, Issue Researcher Gets $5,000

Glitch allowed password change, disabling 2FA

 
Want more? Browse: