Security News

Most SharePoint Installations Vulnerable to XSS Attacks (Security Week)
2017-06-15 10:43

One of the vulnerabilities patched by Microsoft this week with its monthly security updates is a potentially serious cross-site scripting (XSS) flaw believed to affect most SharePoint 2016...

Verizon Patches XSS Issues in its Messaging Client (Threatpost)
2017-05-22 19:25

Verizon patched late last year persistent- DOM-based cross-site scripting vulnerabilities in its Message+ messaging client that could allow an attacker to control a user's session.

WordPress Fixes CSRF, XSS Bugs, Announces Bug Bounty Program (Threatpost)
2017-05-18 18:17

WordPress fixed six vulnerabilities with version 4.7.5 and announced a bug bounty program with HackerOne this week.

ColdFusion Hotfix Resolves XSS, Java Deserialization Bugs (Threatpost)
2017-04-25 16:36

Adobe released an important security hotfix for several versions of Coldfusion, resolving two bugs, Tuesday morning.