WordPress Plugin WP Statistics: Unauthenticated Stored XSS Under Certain Configurations

http://feedproxy.google.com/~r/sucuri/blog/~3/K_Jvk3W9_n0/wordpress-plugin-wp-statistics-unauthenticated-stored-xss-under-certain-configurations.html The WordPress plugin WP Statistics, which has an active installation base of 500k users, has an unauthenticated stored XSS vulnerability on versions prior to 12.6.7. This vulnerability can only be exploited under certain configurations—the default settings are not vulnerable. Timeline 2019/06/26 – Initial contact to the developer. More info: http://feedproxy.google.com/~r/sucuri/blog/~3/K_Jvk3W9_n0/wordpress-plugin-wp-statistics-unauthenticated-stored-xss-under-certain-configurations.html

Linux kernel vulnerability CVE-2019-10126

Linux kernel vulnerability CVE-2019-10126 Security Advisory Security Advisory Description A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function ... More info: https://support.f5.com/csp/article/K95593121

Linux kernel vulnerability CVE-2019-10126

Linux kernel vulnerability CVE-2019-10126 Security Advisory Security Advisory Description A flaw was found in the Linux kernel. A heap based buffer overflow in mwifiex_uap_parse_tail_ies function ... More info: https://support.f5.com/csp/article/K95593121
Translate »