Wallarm [API Security solution]() is now available in AWS as an official Terraform module, with a full feature set including autoscaling groups, API Gateway connector, mirroring, and agentless (out-of ...
Continue ReadingJuly 19, 2022
GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API clientRead More ...
Continue ReadingJuly 19, 2022
Hi, Spring fans! Welcome to another installment of _This Week in Spring_! This week I'm trying to wind down some threads and take some vacation with my family. It's going to be an amazing time, indeed ...
Continue ReadingJuly 19, 2022
Forced Browsing vulnerability in HYPR Server version 6.10 to 6.15.1 allows remote attackers with a valid one-time recovery token to elevate privileges via path tampering in the Magic Link page. This i ...
Continue ReadingJuly 19, 2022
If an on-premise installation of the Pega Platform is configured with the port for the JMX interface exposed to the Internet and port filtering is not properly configured, then it may be possible to u ...
Continue ReadingJuly 19, 2022
Use After Free in GitHub repository gpac/gpac prior to 2.1-DEV.Read More ...
Continue ReadingJuly 19, 2022
Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 authenticator to arbitrary accounts via parameter tampering in ...
Continue ReadingJuly 19, 2022
Zoho ManageEngine Password Manager Pro before 12101 and PAM360 before 5510 are vulnerable to unauthenticated remote code execution. (This also affects ManageEngine Access Manager Plus before 4303 with ...
Continue ReadingJuly 19, 2022
Back to Main