CVE-2023-37260

league/oauth2-server is an implementation of an OAuth 2.0 authorization server written in PHP. Starting in version 8.3.2 and prior to version 8.5.3, servers that passed their keys to the CryptKey cons ...

Continue Reading
PHP vulnerability

## Releases * Ubuntu 23.04 * Ubuntu 22.10 * Ubuntu 22.04 LTS * Ubuntu 20.04 LTS ## Packages * php7.4 - HTML-embedded scripting language interpreter * php8.1 - HTML-embedded scripting langu ...

Continue Reading
Ubuntu 20.04 LTS / 22.04 LTS / 22.10 / 23.04 : PHP vulnerability (USN-6199-1)

The remote Ubuntu 20.04 LTS / 22.04 LTS / 22.10 / 23.04 host has packages installed that are affected by a vulnerability as referenced in the USN-6199-1 advisory. - The vulnerability exists due to a ...

Continue Reading
CVE-2023-36622

The websocket configuration endpoint of the Loxone Miniserver Go Gen.2 before 14.1.5.9 allows remote authenticated administrators to inject arbitrary OS commands via the timezone parameter.Read More ...

Continue Reading
1Panel vulnerable to ommand injection when entering the container terminal

### Impact The authenticated attacker can craft a malicious payloads to achieve command injection when entering the container terminal. 1. Vulnerability analysis. ``` backendappapiv1terminal.go#Contai ...

Continue Reading
1Panel vulnerable to ommand injection when entering the container terminal

### Impact The authenticated attacker can craft a malicious payloads to achieve command injection when entering the container terminal. 1. Vulnerability analysis. ``` backendappapiv1terminal.go#Contai ...

Continue Reading
Gorilla WebSocket vulnerability

## Releases * Ubuntu 18.04 ESM * Ubuntu 16.04 ESM ## Packages * golang-websocket - Go package implementing the WebSocket protocol It was discovered that Gorilla WebSocket incorrectly handled dec ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

AlmaLinux 8 : ruby:2.7 (ALSA-2023:3821)

The remote AlmaLinux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ALSA-2023:3821 advisory. - The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0 ...

Continue Reading

Back to Main

Subscribe for the latest news: