An attacker might be able to delay the processing of DoH3 queries by sending DoH3 GET queries with an invalid DATA frame.
An attacker sending a large number of crafted DNS queries might be able to trigger a dynamic block being inserted with a value causing invalid outp...
A malicious authoritative server can send a crafted zone via the ZoneToCache function that leads to cache poisoning.
Contributor Sensitive Data Exposure in Elementor Website Builder
Contributor Broken Access Control in Slim SEO
Winstone Servlet Engine through 0.9.10 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by sen...
Unauthenticated Cross Site Scripting (XSS) in Forminator
Subscriber Arbitrary File Deletion in JS Help Desk
Subscriber PHP Object Injection in EventPrime
Unauthenticated Cross Site Scripting (XSS) in TablePress
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.