Back to directory
WRITEUP #502

Who are you? The Importance of Verifying Message Origins

XSSpostMessageArbitrary file writeRCESecurity code review
by@scryh_(Stefan Schiller)
Program
Squidex
Published
Jan 29, 2024
Added to HackDex
Feb 6, 2024
Read Full Writeuphttps://www.sonarsource.com/blog/who-are-you-the-importance-of-verifying-message-origins/
RELATED WRITEUPS
Studying 0days: How we hacked Anki, the world's most popular flashcard app
RCEComponents with known vulnerabilities
We hacked Anki - 0 day exploit from studying someone elses flashcards
RCEComponents with known vulnerabilities
Universal Code Execution by Chaining Messages in Browser Extensions
XSSUniversal XSS
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS
RCEArbitrary file write
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization

Built with ❤️ by Shubham Rawat