CVE-2022-23536

A local file inclusion vulnerability exists in Cortex. This issue could allow a malicious actor to remotely read local files as a result of parsing maliciously crafted Alertmanager configurations when ...

Continue Reading
How we use GitHub to be more productive, collaborative, and secure

It’s that time of year where we’re all looking back at what we’ve accomplished and thinking ahead to goals and plans for the calendar year to come. As part of [GitHub Universe](), I sha ...

Continue Reading
Threat Spotlight: XLLing in Excel – threat actors using malicious add-ins

![Threat Spotlight: XLLing in Excel - threat actors using malicious add-ins](https://blog.talosintelligence.com/content/images/2022/12/threatspotlight.png) * Microsoft is phasing out support for exe ...

Continue Reading
Avoid The (Automated) Nightmare Before Christmas

While Christmas is often seen by most as a joyous time to be spent with family and friends, exchanging good wishes and gifts, there are those who seek to exploit it. For fraudsters, this time of the y ...

Continue Reading
Buyer Beware! Account Takeover Attacks Surging This Shopping Season

The prevalence of [Account Takeover (ATO)]() attacks continues to rise, as the threat creeps its way [to the top of the list of security concerns]() for organizations today. Last year, Imperva recorde ...

Continue Reading
CVE-2022-47551

Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large c ...

Continue Reading
CVE-2022-23536

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
pgadmin4 vulnerable to Code Injection

The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. The utility is executed by the ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: