-
## What is missing or needs to be updated?
My previous [PR](https://github.com/OWASP/CheatSheetSeries/pull/1139) to fix #1110 reintroduced an overview of the HMAC CSRF Token and added a Naive Double …
-
What is expected from `file` when using `-p file` without `-P plain.zip`?
The examples mention either `-C encrypted.zip -c cipher -P plain.zip -p plain` or `-c cipherfile -p plainfile`. I tried usi…
-
Should the CA trust the WebPKI to authenticate the MPIC service?
-
## CVE-2020-8911 - Medium Severity Vulnerability
Vulnerable Library - github.com/Aws/aws-sdk-go-v1.12.15
AWS SDK for the Go programming language.
Library home page: https://proxy.golang.org/github.c…
-
-
This is **not** limited to replies from web! Plaintext mails are also affected by this bug.
Maybe related to #3791?
### Steps to Reproduce
Admin Panel » Settings » System » Enable Rich Text: …
-
## CVE-2021-3711 - Critical Severity Vulnerability
Vulnerable Libraries - OpenSSLOpenSSL_1_1_1g, OpenSSLOpenSSL_1_1_1g, OpenSSLOpenSSL_1_1_1g
Vulnerability Details
In order to decrypt SM…
-
## CVE-2021-3711 - Critical Severity Vulnerability
Vulnerable Libraries - OpenSSLOpenSSL_1_1_1g, OpenSSLOpenSSL_1_1_1g, OpenSSLOpenSSL_1_1_1g
Vulnerability Details
In order to decrypt SM…
-
## CVE-2022-4304 - Medium Severity Vulnerability
Vulnerable Libraries - opensslOpenSSL_1_1_1b, opensslOpenSSL_1_1_1b, opensslOpenSSL_1_1_1b
Vulnerability Details
A timing based side chan…
-
Designing a transport encryption protocol is among the most difficult undertakings in cryptography. It's something that I would leave in the hands of a professional cryptographer who is already well-v…