Two separate SpiderLabs vulnerabilities released:
Assi Barak Discovers Magmi Zero DayAsaf Orpani Discovers Critical Joomla SQL injectionAlso A New IoT Vulnerability In Your Connected Tea KettleLinks mentioned in the show:
Assi Barak - Zero-day in Magmi database client for popular e-commerce platform Magento targeted in the wild
Asaf Orpani - Joomla SQL Injection Vulnerability Exploit Results in Full Administrative Access