Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting application files. A remote unprivileged attacker could potentially exploi ...
Continue ReadingOctober 22, 2024
The workflow component in Liferay Portal 7.3.2 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023.Q3.1 through 2023.Q3.8, 7.4 GA through update 92 and 7.3 GA through update 36 does n ...
Continue ReadingOctober 22, 2024
Umbraco, a free and open source .NET content management system, has an improper access control issue starting in version 14.0.0 and prior to version 14.3.0. The issue allows low-privilege users to acc ...
Continue ReadingOctober 22, 2024
An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 11.4 before 17.2.9, all versions starting from 17.3 before 17.3.5, all versions starting from 17.4 before 1 ...
Continue ReadingOctober 22, 2024
Bad actors have been observed targeting Docker remote API servers to deploy the SRBMiner crypto miner on compromised instances, according to new findings from Trend Micro. "In this attack, th ...
Continue ReadingOctober 22, 2024
The version of Adobe FrameMaker Publishing Server installed on the remote Windows host is prior to Adobe FrameMaker Publishing Server 2022 17.0.1. It is, therefore, affected by a vulnerability as refe ...
Continue ReadingOctober 22, 2024
In this blog entry, we discuss how malicious actors are exploiting Docker remote API servers via gRPC/h2c to deploy the cryptominer SRBMiner to facilitate their mining of XRP on Docker...Read More ...
Continue ReadingOctober 22, 2024
The version of Adobe Reader installed on the remote macOS host is a version prior to 15.006.30119 or 15.010.20056. It is, therefore, affected by multiple vulnerabilities. Use-after-free vulnerabilit ...
Continue ReadingOctober 22, 2024
Back to Main