A vulnerability has been found in Auth0 Next.js up to 1.6.1 (JavaScript Library) and classified as critical. Affected by this vulnerability is some unknown functionality of the component Login URL Handler. Upgrading to version 1.6.2 eliminates this vulnerability. Applying the patch 0bbd9f8a0c93af51f607f28633b5fb18c5e48ad6 is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.
Auth0 Next.js up to 1.6.1 Login URL returnTo redirect
- Virtual Patching
- December 17, 2021
- 9:04 am
CVE-2022-36310 : AIRSPAN AIRVELOCITY 1500 PRIOR 15.18.00.2511 SNMPD INHERENTLY DANGEROUS FUNCTION
Description Airspan AirVelocity 1500 software prior to version 15.18.00.2511 had NET-SNMP-EXTEND-MIB enabled on its snmpd service, enabling an attacker with
CVE-2022-2814 : SOURCECODESTER SIMPLE AND NICE SHOPPING CART SCRIPT /MKSHOPE/LOGIN.PHP MSG CROSS SITE SCRIPTING
Description A vulnerability has been found in SourceCodester Simple and Nice Shopping Cart Script and classified as problematic. Affected by
CVE-2022-37397 : YUGABYTEDB 2.6.1 LDAP AUTHENTICATION CONFIG
Description An issue was discovered in the YugabyteDB 2.6.1 when using LDAP-based authentication in YCQL with Microsoft’s Active Directory. When