Catégorie : Veille sécurité – Patchs
-
[WordPress] WordPress 6.9.2 Release
Produit : WordPress Type : Release / Sécurité / Maintenance Date source : 10/03/2026 15:43 Résumé :WordPress 6.9.2 is now available This is a security release that features several fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 6.9.2 from WordPress.org, or visit your…
-
[MediaWiki] [MediaWiki-announce] MediaWiki Extensions and Skins Security Release Supplement (1.39.16/1.43.6/1.44.3/1.45.1)
Produit : MediaWiki Type : Release / Sécurité CVE : CVE-2025-62508, CVE-2026-0668, CVE-2026-0669, CVE-2026-0671, CVE-2026-0670, CVE-2026-22710, CVE-2026-22714, CVE-2026-22713, CVE-2026-22712, CVE-2026-0817 Date source : 09/01/2026 17:54 Résumé :Greetings- With the security/maintenance release of MediaWiki 1.39.16/1.43.6/1.44.3/1.45.1, we would also like to provide this supplementary announcement of MediaWiki extensions and skins with now-public Phabricator tasks, security patches and…
-
[MediaWiki] [MediaWiki-announce] MediaWiki 1.39 is End of Life
Produit : MediaWiki Type : Release / Sécurité Date source : 29/12/2025 20:36 Résumé :As per the MediaWiki version lifecycle[1], I would like to announce the formal end of life (EOL) of MediaWiki 1.39 as of December 31, 2025. 1.39.17 is expected to be the last release for this branch. This means that MediaWiki 1.39…
-
[Dolibarr] Dolibarr has Remote Code Execution Vulnerability (Bypass)
Produit : Dolibarr Type : Security Advisory Criticité : medium Date source : 19/07/2025 17:22 Résumé :# Summary The Dolibarr backend provides the function of adding Menu, and supports setting permissions for the added Menu:  This is the trigger point of the vulnerability. The submitted permission can be php code, and it will be…
-
[Dolibarr] HTML injection vulnerability in Dolibarr Application Home Page
Produit : Dolibarr Type : Security Advisory Criticité : medium CVE : CVE-2024-23817 Date source : 25/01/2024 16:45 Résumé :### Summary Observed a HTML Injection vulnerbaility in the Home page of Dolibarr Application. This vulnerability allows an attacker to inject arbitrary HTML tags and manipulate the rendered content in the application's response. Specifically, I was…
