Category Archives: Advisories

ZDI-22-1288: Microsoft SharePoint Workflow Deserialization of Untrusted Data Remote Code Execution Vulnerability

Read Time:7 Second

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft SharePoint. Authentication is required to exploit this vulnerability.

Read More

webkit2gtk3-2.38.0-2.fc35

Read Time:23 Second

FEDORA-2022-ece798a8d4

Packages in this update:

webkit2gtk3-2.38.0-2.fc35

Update description:

New media controls UI style.
Add new API to set WebView’s Content-Security-Policy for web extensions support.
Make it possible to use the remote inspector from other browsers using WEBKIT_INSPECTOR_HTTP_SERVER env var.
MediaSession is enabled by default, allowing remote media control using MPRIS.
Add support for PDF documents using PDF.js.
Security fixes: CVE-2022-32886

Read More

webkit2gtk3-2.38.0-2.fc36

Read Time:23 Second

FEDORA-2022-a77b646471

Packages in this update:

webkit2gtk3-2.38.0-2.fc36

Update description:

New media controls UI style.
Add new API to set WebView’s Content-Security-Policy for web extensions support.
Make it possible to use the remote inspector from other browsers using WEBKIT_INSPECTOR_HTTP_SERVER env var.
MediaSession is enabled by default, allowing remote media control using MPRIS.
Add support for PDF documents using PDF.js.
Security fixes: CVE-2022-32886

Read More

CVE-2020-25491

Read Time:9 Second

6Kare Emakin 5.0.341.0 is affected by Cross Site Scripting (XSS) via the /rpc/membership/setProfile DisplayName field, which is mishandled when rendering the Activity Stream page.

Read More