Traefik allows path traversal using url encoding

Impact There is a potential vulnerability in Traefik managing the requests using a PathPrefix, Path or PathRegex matcher. When Traefik is configured to route the requests to a backend using a matcher ...

Continue Reading
CVE-2025-45997

creation_timestamp| type| source ---|---|--- 2025-05-28 15:22:46+00:00| seen| https://bsky.app/profile/2rZiKKbOU3nTafniR2qMMSE0gwZ.activitypub.awakari.com.ap.brid.gy/post/3lqaiud5pwjr2 2025-05-28 15:2 ...

Continue Reading
Valtimo backend libraries allows objects in the object-api to be accessed and modified by unauthorized users

Impact All objects for which an object-management configuration exists can be listed, viewed, edited, created or deleted by unauthorised users. If object-urls are exposed via other channels, the conte ...

Continue Reading
Issue with Amazon Redshift Python Connector and the BrowserAzureOAuth2CredentialsProvider plugin

Summary Amazon Redshift Python Connector is a pure Python connector to Redshift (i.e., driver) that implements the Python Database API Specification 2.0. When the Amazon Redshift Python Connector is c ...

Continue Reading
CVE-2025-5298

creation_timestamp| type| source ---|---|--- 2025-05-28 12:13:50+00:00| seen|...Read More ...

Continue Reading
CVE-2025-5297

creation_timestamp| type| source ---|---|--- 2025-05-28 12:13:50+00:00| seen|...Read More ...

Continue Reading
CVE-2025-5298

creation_timestamp| type| source ---|---|--- 2025-05-28 12:13:50+00:00| seen|...Read More ...

Continue Reading
CVE-2025-3864

creation_timestamp| type| source ---|---|--- 2025-05-28 12:13:51+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: