Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Shynet | VERSION 0.13.1

Summary

Bishop Fox's audit of Shynet 0.13.1 found two unauthenticated flaws: stored XSS via analytics location/referrer fields, and password-reset poisoning via a spoofed Host header; fixed in 0.14.0.
Published
Collected

original ↗

Related coverage

back