Mattermost Focalboard up to 0.7.4/0.8.3/0.9.4/0.10.0 Logout session expiration

A vulnerability was found in Mattermost Focalboard up to 0.7.4/0.8.3/0.9.4/0.10.0 (Forum Software) and classified as problematic. Affected by this issue is an unknown code of the component Logout. Upgrading to version 0.7.5, 0.8.4, 0.9.5, 0.10.1 or 0.11.0-rc1 eliminates this vulnerability. Applying the patch 0142c114e9325722d6c8e8ca00f10f0f34dd0409 is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2022-1840 : Home Clean Services Management System Stored Cross-Site Scripting (XSS)

CVE-2022-1840 : Home Clean Services Management System Stored Cross-Site Scripting (XSS)

Description Persistent XSS (or Stored XSS) attack is one of the three major categories of XSS attacks, the others being

CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2

CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2

Description Several Cross-Site Scripting vulnerabilities in the Curtain WordPress plugin. Due to these Cross-Site Scripting vulnerabilities, an attacker would be

CVE-2022-AVAST2 : Self-Defense Bypass via Repairing Function

CVE-2022-AVAST2 : Self-Defense Bypass via Repairing Function

Description It was noted that there is security checking to prevent some of the Avast processes from loading of undesired/unsigned