SickRage < v2018-09-03 allows an attacker to view a users saved Github credentials in HTTP responses unless the user has set login information for SickRage. By default, SickRage does not require login information for the installation.
dd9ab4c81672ae1f6d02400e007c99b8a954b537d0c4ba52fa9e5143456ba769
SickRage versions prior to 2018.03.09 return clear-text credentials in HTTP responses.
4eca74b6076c68ef8dfaed89847067aaacb96f5e62b6e0dd9c02340a7fcaca16
TwonkyMedia Server version 7.0.11-8.5 suffers from a persistent cross site scripting vulnerability.
d5e79d511930141799083a74c5ca04b9688a5a349d708b03535f9fb9a0b63425
TwonkyMedia Server version 7.0.11-8.5 suffers from a directory traversal vulnerability.
1b6da30e8b845b06783ed2bef3e1450088d141271046aa6b1213cb09f99b0e3b