New Amazon Ring Vulnerability Could Have Exposed All Your Camera Recordings

[![](https://thehackernews.com/new-images/img/b/R29vZ2xl/AVvXsEhJnkzlc7_7RrO_NtOXkidmrW8fpEg0zU-JeD-Q_JuMlobXkJXMA2zMWJpqCEAmMsTbkGH0WaNOJvjV3FEkhZGMbJO-PEWaSeD00-Ii97Hvzl4cfY27K1OGgpK1U_CC_6GVynSXf6- ...

Continue Reading
Oracle Linux 8 : cri-o (ELSA-2022-9720)

The remote Oracle Linux 8 host has a package installed that is affected by a vulnerability as referenced in the ELSA-2022-9720 advisory. - A vulnerability was found in CRI-O that causes memory or di ...

Continue Reading
CVE-2022-30952

Jenkins Pipeline SCM API for Blue Ocean Plugin 1.25.3 and earlier allows attackers with Job/Configure permission to access credentials with attacker-specified IDs stored in the private per-user creden ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Security Bulletin: IBM App Connect Enterprise Certified Container DesignerAuthoring operands may be vulnerable to loss of confidentiality due to CVE-2022-35948 and CVE-2022-35949

## Summary Node.js module undici is used by IBM App Connect Enterprise Certified Container when testing API endpoints. IBM App Connect Enterprise Certified Container DesignerAuthoring operands that us ...

Continue Reading

CVSS3 - CRITICAL

apollo-server-core vulnerable to URL-based XSS attack affecting IE11 on default landing page

### Impact The default landing page contained HTML to display a sample `curl` command which is made visible if the full landing page bundle could not be fetched from Apollo's CDN. The server's URL is ...

Continue Reading
CVE in KubeVirt – arbitrary host file read from the VM

**Summary** As part of a Kubevirt audit performed by NCC group, a finding dealing with systemic lack of path sanitization which leads to a path traversal was identified. Google tested the exploitabil ...

Continue Reading
Nodejs ‘undici’ Vulnerable to CRLF Injection via Content-Type

### Impact `=Read More ...

Continue Reading

CVSS3 - CRITICAL

WatchGuard FireboxV Fireware OS Web Detection

The web UI for a WatchGuard FireboxV running Fireware OS was detected on the remote host. Note the plugin attempts to retrieve the Fireware OS version information from the API when HTTP Basic authenti ...

Continue Reading

Back to Main

Subscribe for the latest news: