Type: Vulnerability. The Email Subscribers & Newsletters Plugin for WordPress is prone to multiple security-bypass vulnerabilities; fixes are available.
More info:
http://www.symantec.com/security_response/vulnerability.jsp?bid=111306&om_rssid=sr-advisories
It was discovered that the Title blacklist functionality in MediaWiki,a website engine for collaborative work, could by bypassed.
More info:
https://www.debian.org/security/2019/dsa-4592
It was found that freeimage, a graphics library, was affected by thefollowing two security issues:
More info:
https://www.debian.org/security/2019/dsa-4593
Guido Vranken discovered an overflow bug in the x64_64 Montgomerysquaring procedure used in exponentiation with 512-bit moduli.
More info:
https://www.debian.org/security/2019/dsa-4594
It was discovered that debian-lan-config, a FAI config space for theDebian-LAN system, configured too permissive ACLs for the Kerberos adminserver, which allowed password changes for other user principals.
More info:
https://www.debian.org/security/2019/dsa-4595
Several issues were discovered in the Tomcat servlet and JSP engine, whichcould result in session fixation attacks, information disclosure, cross-sitescripting, denial of service via resource exhaustion and insecureredirects.
More info:
https://www.debian.org/security/2019/dsa-4596
Several issues were discovered in the Tomcat servlet and JSP engine, whichcould result in session fixation attacks, information disclosure, cross-sitescripting, denial of service via resource exhaustion and insecureredirects.
More info:
https://www.debian.org/security/2019/dsa-4596
Intel SPS vulnerability CVE-2019-11109 Security Advisory Security Advisory Description Logic issue in the subsystem for Intel(R) SPS before versions SPS_E5_04.01.04.275.0, SPS_SoC-X_04.00.04.100.0 ...
More info:
https://support.f5.com/csp/article/K54164678?utm_source=f5support&utm_medium=RSS
BIG-IP TMM vulnerability CVE-2019-6678 Security Advisory Security Advisory Description When the tm.minipfragsize BigDB variable is modified from the default value to a value less than 60 and the ...
More info:
https://support.f5.com/csp/article/K04897373?utm_source=f5support&utm_medium=RSS
Type: Vulnerability. The WP Maintenance Plugin for WordPress is prone to a cross-site request-forgery vulnerability.
More info:
http://www.symantec.com/security_response/vulnerability.jsp?bid=111297&om_rssid=sr-advisories