Detectify security updates for 20 February
Blog post from Detectify
Detectify consistently updates its security tool every two weeks with new findings, features, and improvements based on input from its security researchers and the Crowdsource ethical hacker community, although not all updates can be publicized due to confidentiality agreements. Recent updates to the Detectify scanner include tests for several security vulnerabilities, such as an open redirect issue in Oracle E-Business Suite, a cross-site scripting (XSS) vulnerability in the same suite, open access exposure in the old CruiseControl CI tool, a stack trace disclosure in FinalBuilder, an SQL injection vulnerability in the Joomla! jmultiplehotelreservation extension version 6.0.7 and below, and potential exposure risks in MongoDB due to insecure HTTP interface configurations.