Discourse 3.2.x – Anonymous Cache Poisoning

#!/usr/bin/env python3 “”” Exploit Title: Discourse 3.2.x – Anonymous Cache Poisoning Date: 2024-10-15 Exploit Author: ibrahimsql Github: : https://github.com/ibrahmsql Vendor Homepage: https://discourse.org Software Link: https://github.com/discourse/discourse Version: Discourse < latest (patched) Tested on: Discourse 3.1.x, 3.2.x CVE: CVE-2024-47773 CVSS: 7.1 (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L) Description: Discourse anonymous cache poisoning vulnerability allows attackers to poison the cache with responses…

Read More

Microsoft Outlook – Remote Code Execution (RCE)

# Titles: Microsoft Outlook – Remote Code Execution (RCE) # Author: nu11secur1ty # Date: 07/06/2025 # Vendor: Microsoft # Software: https://www.microsoft.com/en-us/microsoft-365/outlook/log-in # Reference: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-47176 > https://www.cloudflare.com/learning/security/what-is-remote-code-execution/ # CVE-2025-47176 ## Description This proof-of-concept (PoC) demonstrates the CVE-2025-47176 vulnerability simulation. It injects a crafted mail item into Outlook containing a malicious sync path that triggers an…

Read More

‘Superman’ Red Carpet Hollywood Premiere

Nicholas Hoult, Rachel Brosnahan, David Corenswet at the “Superman” World Premiere held at the TCL … More Chinese Theatre on July 07, 2025 in Los Angeles, California. (Photo by River Callaway/Variety via Getty Images) Variety via Getty Images Director James Gunn’s Superman took flight at the film’s Hollywood premiere Monday night in Los Angeles with…

Read More

Apple names new chief operating officer

Unlock the Editor’s Digest for free Roula Khalaf, Editor of the FT, selects her favourite stories in this weekly newsletter. Apple has promoted Sabih Khan to chief operating officer, putting him in charge of the company’s supply chain when the tech giant and its peers are navigating Donald Trump’s trade war. Khan, who joined Apple…

Read More