Security Bulletin: IBM Spectrum Scale (GPFS) Hadoop connector is affected by a security vulnerability (CVE-2022-25168)

## Summary A security vulnerability has been identified in the IBM Spectrum Scale (GPFS) Hadoop connector which could allow a local authenticated attacker to execute arbitrary commands on the system. ...

Continue Reading
SiriusXM Vulnerability Lets Hackers Remotely Unlock and Start Connected Cars

[![Hack Connected Cars](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEiJa01Keo3S1ObiTuCE6VQ0EqbIi7xwjsdV40blAZui0I0YEyNI5iiRWbg7TuJUhxyVqBI0QUPKKnQ32-4V7AxKyIT8Rjo20MEYa2Eqxtb8wy6rWOHgzAaq ...

Continue Reading
[SECURITY] [DLA 3222-1] node-fetch security update

------------------------------------------------------------------------- Debian LTS Advisory DLA-3222-1 [email protected] https://www.debian.org/lts/security/ ...

Continue Reading
node-fetch – security update

ranjit-git discovered an information leak vulnerability in node-fetch, a Node.js module exposing a window.fetch compatible API on Node.js runtime: the module was not honoring the same-origin-policy an ...

Continue Reading
Exploit for Authentication Bypass by Spoofing in Apache Apisix

# POC 收集的POC ## CVE-2022-24112 为了做春秋云境:CVE-2022-24112靶场环境,修改了两个...Read More ...

Continue Reading
Improper Access Control

ghost is vulnerable to improper access control. An unprivileged member has the ability to view and change unintended newsletter settings due to improper validation for nested objects in `Memebers` API ...

Continue Reading
Mattermost Server < 7.1.4 / 7.2.x < 7.2.1 / 7.3.x < 7.3.1 DoS (MMSA-2022-00118)

The version of Mattermost Server running on the remote host is prior to 7.1.4, 7.2.x prior to 7.2.1, or 7.3.x prior to 7.3.1. It is, therefore, affected by a denial of service (DoS) vulnerability. An ...

Continue Reading
Mattermost Server < 7.4.0 DoS (MMSA-2022-00124)

The version of Mattermost Server running on the remote host is prior to 7.4.0. It is, therefore, affected by a denial of service (DoS) vulnerability. An authenticated, remote attacker can crash the se ...

Continue Reading

Back to Main

Subscribe for the latest news: