Abdul muhaimin
Abdul muhaimin
## Description ## This package is vulnerable to MITM or Man-In-The-Middle attack due to a downloading resources through insecure protocols. It is possible for an attacker to intercept and alter...
 have tried downgradeing docker-compose but no hope ? any? thanks
i have discoverd a xss thru huntr please check it https://www.huntr.dev/bounties/1-TruthHun/DocHub
recently one of my old report got invalid because lack of poc , which accidentally deleted myself a month ago  So add an option on the disclosure page to...
Using SafeLoader instead of Loader to avoid security risks here is a example proof of concept :  for using Loader and here is proof of fix :  **Hacktoberfest**
Here is old Gemfile ``` source 'https://rubygems.org' ruby "2.3.5" gem 'sinatra', '1.4.8' gem 'haml' gem 'rubyzip' gem 'json','1.8.6' gem 'nokogiri' gem 'data_mapper', '1.2.0' gem 'dm-sqlite-adapter', '1.2.0' ``` now its working...