Information Disclosure

github.com/cortexproject/cortex is vulnerable to information disclosure. The vulnerability exists in multiple functions of `api.go` due to a lack of proper validation in `OpsGenie` alert manager confi ...

Continue Reading
Veeam Backup and Replication Multiple Vulnerabilities (KB4288)

The version of Veeam Backup and Replication installed on the remote Windows host is a version prior to 10.0.1.4854 P20220304 or prior to 11.0.1.1261 P20220302 or prior to. It is, therefore, affected b ...

Continue Reading
This Week in Spring – December 20th, 2022

![](https://github.com/joshlong/blog-images/raw/master/happy-holidays/happy-holidays-2022-small.png) Hi, Spring fans! It's the 20th of December, 2022 as I write this, which means that by the time we m ...

Continue Reading
Apiman has insufficient checks for read permissions

Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large c ...

Continue Reading
Apiman has insufficient checks for read permissions

Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large c ...

Continue Reading
CVE-2022-23536

A local file inclusion vulnerability exists in Cortex. This issue could allow a malicious actor to remotely read local files as a result of parsing maliciously crafted Alertmanager configurations when ...

Continue Reading
How we use GitHub to be more productive, collaborative, and secure

It’s that time of year where we’re all looking back at what we’ve accomplished and thinking ahead to goals and plans for the calendar year to come. As part of [GitHub Universe](), I sha ...

Continue Reading
Threat Spotlight: XLLing in Excel – threat actors using malicious add-ins

![Threat Spotlight: XLLing in Excel - threat actors using malicious add-ins](https://blog.talosintelligence.com/content/images/2022/12/threatspotlight.png) * Microsoft is phasing out support for exe ...

Continue Reading

Back to Main

Subscribe for the latest news: