-
Vulnerable Library - xstream-1.4.5.jar
XStream is a serialization library from Java objects to XML and back.
Library home page: http://xstream.codehaus.org
Path to dependency file: /webgoat-server/p…
-
Vulnerable Library - spring-core-4.3.18.RELEASE.jar
Spring Core
Library home page: http://projects.spring.io/spring-framework
Path to vulnerable library: /lib/spring-core-4.3.18.RELEASE.jar
Found…
-
https://www.reddit.com/r/netsec/comments/3wt0yk/critical_0day_remote_command_execution/
Prefer a non-exploit check, but will accept up to a full exploit as long as it cleans up after itself.
-
## CVE-2014-3578 - Medium Severity Vulnerability
Vulnerable Library - spring-core-3.2.8.RELEASE.jar
Spring Core
Library home page: http://springsource.org/spring-framework
Path to dependency file: /…
-
This is a very handy solution, but I read this while learning about CSPs:
"Don't create a middleware that replaces all script tags with "script nonce=..." because attacker-injected scripts will th…
-
## CVE-2023-21277 - Medium Severity Vulnerability
Vulnerable Library - baseandroid-10.0.0_r34
Android framework classes and services
Library home page: https://android.googlesource.com/platform/fra…
-
## CVE-2023-21279 - Medium Severity Vulnerability
Vulnerable Library - baseandroid-10.0.0_r34
Android framework classes and services
Library home page: https://android.googlesource.com/platform/fra…
-
## CVE-2023-21288 - Medium Severity Vulnerability
Vulnerable Library - baseandroid-10.0.0_r34
Android framework classes and services
Library home page: https://android.googlesource.com/platform/fra…
-
## CVE-2020-27059 - High Severity Vulnerability
Vulnerable Library - baseandroid-11.0.0_r39
Android framework classes and services
Library home page: https://android.googlesource.com/platform/frame…
-
## CVE-2020-27059 - High Severity Vulnerability
Vulnerable Library - baseandroid-10.0.0_r34
Android framework classes and services
Library home page: https://android.googlesource.com/platform/frame…