A vulnerability classified as problematic has been found in Digi Engine.IO up to 4.1.1/5.2.0/6.1.0 on Socket. Affected is some unknown processing of the component HTTP Request Handler. Upgrading to version 4.1.2, 5.2.1 or 6.1.1 eliminates this vulnerability. The upgrade is hosted for download at github.com. Applying the patch 66f889fc1d966bf5bfa0de1939069153643874ab is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.
Digi Engine.IO up to 4.1.1/5.2.0/6.1.0 on Socket HTTP Request unusual condition
Description Persistent XSS (or Stored XSS) attack is one of the three major categories of XSS attacks, the others being
CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2
Description Several Cross-Site Scripting vulnerabilities in the Curtain WordPress plugin. Due to these Cross-Site Scripting vulnerabilities, an attacker would be
Description It was noted that there is security checking to prevent some of the Avast processes from loading of undesired/unsigned