Company
Date Published
Author
Detectify
Word count
272
Language
-
Hacker News points
None

Summary

Detectify provides major security updates every two weeks, enhancing their tool with new findings and improvements from their security researchers and the Crowdsource ethical hacker community. While not all updates can be disclosed due to confidentiality agreements, they are immediately integrated into the scanner for users. Recent updates include the addition of tests for three high-severity exploits reported by ethical hackers, which were incorporated into the Detectify scanner on October 19. These vulnerabilities include CVE-2018-18069, a stored cross-site scripting flaw in the WordPress wpml plugin, CVE-2018-2894, a remote code execution issue in Oracle WebLogic, and CVE-2018-1673, a reflected cross-site scripting vulnerability in IBM WebSphere Portal. Users are encouraged to scan for these vulnerabilities and can start a free trial or log in to check their assets.