XSS Vulnerability

Critical Ivanti EPM Vulnerability Allows Admin Session Hijacking via Stored XSS

A critical stored cross-site scripting vulnerability in Ivanti Endpoint Manager ("EPM") versions 2024 SU4 and below, that could enable attackers…

9 months ago

phpMyAdmin Vulnerability Let Hackers Trigger XSS Attack With Malicious Tables

A moderate-severity Cross-Site Scripting (XSS) vulnerability has been identified in phpMyAdmin, a widely used open-source tool for managing MySQL databases. …

2 years ago

GitLab Patches Critical HTML Injection Flaw Leading To XSS Attacks

GitLab has released new patch versions 17.5.1, 17.4.3, and 17.3.6 for both its Community Edition (CE) and Enterprise Edition (EE).…

2 years ago

Critical XSS Vulnerability In Roundcube Let Attackers Execute Arbitrary Code

Roundcube, a widely adopted open-source webmail application, is included by default in the popular cPanel web hosting control panel, leading…

2 years ago

Hackers Use Windows XSS Flaw To Execute Arbitrary Command In MMC Console

The shift in attack vectors includes JavaScript, MSI files, LNK objects, and ISOs, as Microsoft has disabled Office macros in…

2 years ago

IBM QRadar XSS Flaw Let Attackers Arbitrary JavaScript Code

A significant vulnerability was detected in IBM QRadar Suite Software and Cloud Pak for Security, allowing attackers to execute arbitrary…

2 years ago