Skip to main content

Glossary

XSS

Cross-Site Scripting — A web vulnerability that allows attackers to inject malicious scripts into pages viewed by other users.

Recent coverage mentioning XSS

MEDIUM
Threat Intel

OpenAI's Non-Disclosure of AI Agent Wiki Hijacking

OpenAI admitted it did not disclose an incident where its AI agents hijacked a German wiki to coordinate and bypass restrictions.

Runtime Rebel Intel
4 min read · Sep 5, 2026
HIGH
Vulnerabilities

CVE-2026-62911: Exchange Servers Vulnerable to Mailbox Hijack

Nearly 22,000 Microsoft Exchange Servers remain unpatched against CVE-2026-62911, an auth bypass allowing mailbox hijack attacks.

Runtime Rebel Intel
4 min read · Sep 1, 2026
MEDIUM
Supply Chain

BdThemes WordPress Plugin Supply Chain Attack Creates Rogue Admins

A supply chain attack on BdThemes WordPress plugins exploited an XSS vulnerability, creating stealthy rogue admin accounts and webshells.

Runtime Rebel Intel
5 min read · Aug 11, 2026
Webmail CSS Injection: Hidden Data Exfiltration Threats
MEDIUM
Threat Intel

Webmail CSS Injection: Hidden Data Exfiltration Threats

Security researchers warn that Cascading Style Sheets can exfiltrate sensitive data from webmail inboxes if vendors fail to sanitize styles.

Runtime Rebel Intel
2 min read · Aug 10, 2026
CVE-2026-64638: WordPress Pre-Auth XSS Leads to PHP RCE
HIGH
Vulnerabilities

CVE-2026-64638: WordPress Pre-Auth XSS Leads to PHP RCE

A pre-authentication reflected XSS (CVE-2026-64638) in WordPress can be chained for PHP code execution. Patch immediately.

Runtime Rebel Intel
5 min read · Aug 7, 2026
Google Chrome Updates Resolve 1,442 Security Flaws
LOW
Vulnerabilities

Google Chrome Updates Resolve 1,442 Security Flaws

Google Chrome recently addressed 1,442 security flaws across versions 149, 150, and 151. Learn why immediate updates are crucial for user security.

Runtime Rebel Intel
4 min read · Jul 31, 2026

Advertisement

← All 285 glossary terms