Important: Red Hat Security Advisory: sqlite security update

An update for sqlite is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CV ...

Continue Reading
GO-2025-3800 eKuiper /config/uploads API arbitrary file writing may lead to RCE in github.com/lf-edge/ekuiper

eKuiper /config/uploads API arbitrary file writing may lead to RCE in...Read More ...

Continue Reading
GO-2025-3783 OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao/api

OpenBao allows cancellation of root rekey and recovery rekey operations without authentication in github.com/openbao/openbao/api. NOTE: The source advisory for this report contains additional versions ...

Continue Reading
GHSA-8XQ3-W9FX-74RV webfinger.js Blind SSRF Vulnerability

Description The lookup function takes a user address for checking accounts as a feature, however, as per the ActivityPub spec (https://www.w3.org/TR/activitypub/#security-considerations), on the secur ...

Continue Reading
CVE-2025-54768

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to download logs from ...

Continue Reading
CVE-2025-54766

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to export the applianc ...

Continue Reading
CVE-2025-54765

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to import the applianc ...

Continue Reading
CVE-2025-54765 KL-001-2025-013: Xorux XorMon-NG Web Application Privilege Escalation to Administrator

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to import the applianc ...

Continue Reading

Back to Main

Subscribe for the latest news: