CVE-2022-29225

Envoy is a cloud-native high-performance proxy. In versions prior to 1.22.1 secompressors accumulate decompressed data into an intermediate buffer before overwriting the body in the decode/encodeBody. ...

Continue Reading
CVE-2022-29227

Envoy is a cloud-native high-performance edge/middle/service proxy. In versions prior to 1.22.1 if Envoy attempts to send an internal redirect of an HTTP request consisting of more than HTTP headers, ...

Continue Reading
CVE-2022-29250

GLPI is a Free Asset and IT Management Software package, that provides ITIL Service Desk features, licenses tracking and software auditing. In versions prior to version 10.0.1 it is possible to add ex ...

Continue Reading
CVE-2022-31033

The Mechanize library is used for automating interaction with websites. Mechanize automatically stores and sends cookies, follows redirects, and can follow links and submit forms. In versions prior to ...

Continue Reading
CVE-2022-31051

semantic-release is an open source npm package for automated version management and package publishing. In affected versions secrets that would normally be masked by semantic-release can be accidental ...

Continue Reading
CVE-2022-21499

KGDB and KDB allow read and write access to kernel memory, and thus should be restricted during lockdown. An attacker with access to a serial port could trigger the debugger so it is important that th ...

Continue Reading
RST Threat feed. IOC: https://timenow.pw/api/login.php

Found **https://timenow[.]pw/api/login.php** in [RST Threat F...Read More ...

Continue Reading
RST Threat feed. IOC: https://service-bybfqw7c-1258326023.sg.apigw.tencentcs.com/api/getit

Found **https://service-bybfqw7c-1258326023[.]sg.apigw.tencentcs...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: