URL previews of unusual or maliciously-crafted pages can crash Synapse media repositories or Synapse monoliths

### Impact URL previews of some web pages can exhaust the available stack space for the Synapse process due to unbounded recursion. This is sometimes recoverable and leads to an error for the request ...

Continue Reading
URL previews of unusual or maliciously-crafted pages can crash Synapse media repositories or Synapse monoliths

### Impact URL previews of some web pages can exhaust the available stack space for the Synapse process due to unbounded recursion. This is sometimes recoverable and leads to an error for the request ...

Continue Reading
Leaky Access Tokens Exposed Amazon Photos of Users

The Amazon Photos app for Android insufficiently protected user access tokens, according to a blog post published on Wednesday. Theoretically, with exposed tokens, an attacker could’ve accessed users ...

Continue Reading
Application Security in 2022: Where Are We Now?

![Application Security in 2022: Where Are We Now?](https://blog.rapid7.com/content/images/2022/06/appsec-in-2022.jpg) It’s always a good thing to take a step back every once in a while to take the la ...

Continue Reading
Security update for chromium (important)

An update that fixes 9 vulnerabilities is now available. Description: This update for chromium fixes the following issues: Chromium 103.0.5060.53 (boo#1200783) * CVE-2022-2156: Use after free ...

Continue Reading
Security update for chromium (important)

An update that fixes 9 vulnerabilities is now available. Description: This update for chromium fixes the following issues: Chromium 103.0.5060.53 (boo#1200783) * CVE-2022-2156: Use after free ...

Continue Reading
CVE-2022-2238

A vulnerability was found in the search-api container when a query in the search filter gets parsed by the backend. This flaw allows an attacker to craft specific strings containing special characters ...

Continue Reading
CVE-2022-31884

Marval MSM v14.19.0.12476 has an Improper Access Control vulnerability which allows a low privilege user to delete other users API Keys including high privilege and the Administrator users API Keys.Re ...

Continue Reading

Back to Main

Subscribe for the latest news: