Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities Reddit r/netsec

New Joomla! Novarain/Tassos Framework Vulnerabilities Advisory

Source code review of the Novarain/Tassos framework identified three critical primitives—
Read Full Article →

Source code review of the Novarain/Tassos framework uncovered 3 critical primitives: unauthenticated file read, unauthenticated file deletion, and SQL injection enabling arbitrary DB reads, affecting 5 widely deployed Joomla! Extensions. Chained together, these bugs allow reliable RCE and administrator account takeover on unpatched Joomla! Instances. submitted by /u/SSDisclosure [link] [comments]

Share this article