Security Bulletin: Platform Navigator and Automation Assets in IBM Cloud Pak for Integration are vulnerable to permissions bypass, privilege escalation, key generation failure, denial of service and request smuggling due to vulnerabilities in Node.js

## Summary Platform Navigator and Automation Assets in IBM Cloud Pak for Integration are vulnerable to permissions bypass, privilege escalation, key generation failure, denial of service and request s ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

[SECURITY] Fedora 37 Update: opensc-0.23.0-5.fc37

OpenSC provides a set of libraries and utilities to work with smart cards. Its main focus is on cards that support cryptographic operations, and facilitate their use in security applications such as ...

Continue Reading

CVSS3 - HIGH

CVSS2 - LOW

[SECURITY] Fedora 38 Update: opensc-0.23.0-5.fc38

OpenSC provides a set of libraries and utilities to work with smart cards. Its main focus is on cards that support cryptographic operations, and facilitate their use in security applications such as ...

Continue Reading

CVSS3 - HIGH

CVSS2 - LOW

CVE-2023-40165

rubygems.org is the Ruby community's primary gem (library) hosting service. Insufficient input validation allowed malicious actors to replace any uploaded gem version that had a platform, version numb ...

Continue Reading
Karma Catches Up to Global Phishing Service 16Shop

You've probably never heard of "**16Shop**," but there's a good chance someone using it has tried to phish you. ![](https://krebsonsecurity.com/wp-content/uploads/2023/08/16shopphish.png) A 16Shop phi ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (August 7, 2023 to August 13, 2023)

Last week, there were 86 vulnerabilities disclosed in 68 WordPress Plugins and 3 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 36 Vulnerabi ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Walchem Intuition 9

## 1. EXECUTIVE SUMMARY * **CVSS v3 7.5** * **ATTENTION:** Exploitable remotely/low attack complexity * **Vendor: **Walchem * **Equipment: **Intuition 9 * **Vulnerabilities: **Missing Authen ...

Continue Reading
NoFilter Attack: Sneaky Privilege Escalation Method Bypasses Windows Security

[![](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() A previously undetected attack method called **NoFilter** has been found to ...

Continue Reading

Back to Main

Subscribe for the latest news: