June 13, 2023—KB5027223 (OS Build 22000.2057)

None For information about Windows update terminology, see the article about the [types of Windows updates]() and the [monthly quality update types](). For an overview of Windows 11, version 21H2, see ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - LOW

June 13, 2023—KB5027215 (OS Builds 19044.3086 and 19045.3086)

None **UPDATED 5/9/23 REMINDER **All editions of Windows 10, version 20H2 reached end of service on May 9, 2023. After May 9, 2023, these devices will not receive monthly security updates. These updat ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - LOW

CVE-2023-2801

A flaw was found in grafana. This issue occurs when sending an API call to the /ds/query or public dashboard query endpoint that has mixed queries, such as having two or more distinct data sources in ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - LOW

Important: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: 0-byte UDP payload Denial of Service (CVE-2023-32067) For more ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-3234

A vulnerability was found in Zhong Bang CRMEB up to 4.6.0. It has been declared as problematic. Affected by this vulnerability is the function put_image of the file api/controller/v1/PublicController. ...

Continue Reading
Ubuntu 16.04 ESM / 18.04 ESM / 20.04 ESM / 22.04 ESM : GNU SASL vulnerability (USN-6169-1)

The remote Ubuntu 16.04 ESM / 18.04 ESM / 20.04 ESM / 22.04 ESM host has packages installed that are affected by a vulnerability as referenced in the USN-6169-1 advisory. - GNU SASL libgsasl server- ...

Continue Reading
Access Control Bypass

github.com/grafana/grafana is vulnerable to Access Control Bypass. The vulnerability exists due to a lack of write authorization checks in `authorization.go`, which allows an attacker with the viewer ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

CVE-2023-34242

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to version 1.13.4, when Gateway API is enabled in Cilium, the absence of a check on the namespace in wh ...

Continue Reading

Back to Main

Subscribe for the latest news: