CSZ CMS 1.2.9 Article Plugin New Article cross site scripting

A vulnerability was found in CSZ CMS 1.2.9 (Content Management System). It has been classified as problematic. This affects an unknown part of the component Article Plugin. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-21697 : ATLASSIAN SOURCETREE ON MACOS/WINDOWS REMOTE CODE EXECUTION

CVE-2024-21697 : ATLASSIAN SOURCETREE ON MACOS/WINDOWS REMOTE CODE EXECUTION

Description This High severity RCE (Remote Code Execution) vulnerability was introduced in versions 4.2.8 of Sourcetree for Mac and 3.4.19

CVE-2024-52788 : TENDA W9 1.0.0.7(4456) /ETC_RO/SHADOW HARD-CODED PASSWORD

CVE-2024-52788 : TENDA W9 1.0.0.7(4456) /ETC_RO/SHADOW HARD-CODED PASSWORD

Description Tenda W9 v1.0.0.7(4456) was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in

CVE-2024-52587 : STEP-SECURITY HARDEN-RUNNER UP TO 2.10.1 ENVIRONMENT VARIABLE OS COMMAND INJECTION

CVE-2024-52587 : STEP-SECURITY HARDEN-RUNNER UP TO 2.10.1 ENVIRONMENT VARIABLE OS COMMAND INJECTION

Description StepSecurity’s Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. Versions of step-security/harden-runner prior to