Browsing the "scripting" Tag

Statamic CMS Cross Site Scripting – Torchsec

February 14th, 2024 | 🕒

iSpeech.org SEC Consult Vulnerability Lab Security Advisory < 20240212-0 >=======================================================================title: Multiple Stored Cross-Site Scripting vulnerabilitiesproduct: Statamic CMSvulnerable version: <4.46.0, <3.4.17fixed


XoopsCore25 2.5.11 Cross Site Scripting – Torchsec

February 14th, 2024 | 🕒

TTS ## Title: XoopsCore25-2.5.11-XSS-Reflected## Author: nu11secur1ty## Date: 02/12/2024## Vendor: https://xoops.org/## Software: https://github.com/XOOPS/XoopsCore25/releases/tag/v2.5.11## Reference: https://portswigger.net/kb/issues/00200300_cross-site-scripting-reflected ## Description:The value of the yname


PHPJ Callback Widget 1.0 Cross Site Scripting – Torchsec

January 30th, 2024 | 🕒

iSpeech.org ## Title: PHPJ-Callback-Widget-1.0-XSS-Stored-admin-Hijacking## Author: nu11secur1ty## Date: 01/26/2024## Vendor: https://www.phpjabbers.com/## Software: https://www.phpjabbers.com/callback-widget/## Reference: https://portswigger.net/web-security/cross-site-scripting ## Description:The Callback Requests function is


PHPJ Callback Widget 1.0 Cross Site Scripting – Torchsec

January 30th, 2024 | 🕒

Text to Speech Voices ## Title: PHPJ-Callback-Widget-1.0-XSS-Stored-admin-Hijacking## Author: nu11secur1ty## Date: 01/26/2024## Vendor: https://www.phpjabbers.com/## Software: https://www.phpjabbers.com/callback-widget/## Reference: https://portswigger.net/web-security/cross-site-scripting ## Description:The Callback


Interactive Floor Plan 1.0 Cross Site Scripting – Torchsec

January 30th, 2024 | 🕒

iSpeech ## Title: Interactive-Floor-Plan-1.0-XSS-Reflected-SESSION-Hijacking## Author: nu11secur1ty## Date: 01/28/2024## Vendor: https://www.phpjabbers.com/## Software: https://www.phpjabbers.com/interactive-floor-plan-software/#sectionDemo## Reference: https://portswigger.net/web-security/cross-site-scripting/reflected ## Description:The value of the action