Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-m96r-7vqm-j95g: Typo3 Information Disclosure in User Authentication

It has been discovered that login failures have been logged on the default stream with log level “warning” including plain-text user credentials.

ghsa
#git#auth

Typo3 Information Disclosure in User Authentication

Moderate severity GitHub Reviewed Published Jun 5, 2024 to the GitHub Advisory Database • Updated Jun 5, 2024

ghsa: Latest News

GHSA-95v9-hv42-pwrj: gnark is vulnerable to signature malleability in EdDSA and ECDSA due to missing scalar checks