Author: Angelo Barbosa

CVE-2023-6882 | Simple Membership Plugin up to 4.3.8 on WordPress Environment Mode cross site scripting

A vulnerability was found in Simple Membership Plugin up to 4.3.8 on WordPress. It has been classified as problematic. Affected is an unknown function of the component Environment Mode. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2023-6882. It is possible to launch the attack remotely. There is no exploit...

Read More

CVE-2023-6004 | libssh up to 0.9.7/0.10.5 ProxyCommand/ProxyJump hostname code injection

A vulnerability has been found in libssh up to 0.9.7/0.10.5 and classified as critical. This vulnerability affects unknown code of the component ProxyCommand/ProxyJump. The manipulation of the argument hostname leads to code injection. This vulnerability was named CVE-2023-6004. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More