Compass Security News

Here you will find reports, interviews and news. We give you an insight into our work and report on 0day (zero-day) vulnerabilities discovered by our staff on customer projects or in their research time.

 

Lukasz D. identified an XSS vulnerability in the JEditor Jira Plugin.

Read more

Offered at the HSR University of Applied Science in Rapperswil (Switzerland), the new degree programm is targeted at experienced IT professionals who…

Read more

Ville Koch identified a Cross-Site Scripting vulnerability in Abacus.

Read more

Compass analysts identified an XXE vulnerability in Apache Olingo OData 4.0.

 

Read more

Fabio Poloni identified an XSS vulnerability in totemodata®.

Read more

"Heime & Spitäler" is the leading magazine for decision-makers at Swiss homes and hospitals. In the current edition, Compass Security analyst Fabio…

Read more

Silas Bärtsch identified a vulnerability in VeloCloud™ (VMware), that allows a VeloCloud standard admin user to access user information of other…

Read more

Cyber attacks on organizations can be categorized into four different groups. Ivan Bütler tells at Zürichsee-Zeitung what these are.

Read more

Emanuele Barbeno and Lukasz D. have found a method to bypass the Anti-SQL injection filter in Alibaba Druid.

Read more

Thierry Viaccoz has identified an XML External Entity (XXE) vulnerability in "The Scheduler" plugin for Jira.

Read more

Sylvain Heiniger has identified a "Cleartext Storage of Sensitive Information" vulnerability in the MobileIron application Email+.

Read more

Michael Fisler and Felix Aeppli have identified vulnerabilities in the Universal Automation Center (UAC).

 

 

 

Read more