CVE-2024-9802 Conformance validation endpoint discloses detail about service to unauthenticated users

The conformance validation endpoint is public so everybody can verify the conformance of onboarded services. The response could contain specific information about the service, including available endp ...

Continue Reading
CVE-2024-9802

The conformance validation endpoint is public so everybody can verify the conformance of onboarded services. The response could contain specific information about the service, including available endp ...

Continue Reading
CVE-2024-9802

The conformance validation endpoint is public so everybody can verify the conformance of onboarded services. The response could contain specific information about the service, including available endp ...

Continue Reading
CVE-2024-9798

The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for...Read More ...

Continue Reading
CVE-2024-9798 Health endpoint offers list of onboarded services to unauthenticated users

The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for...Read More ...

Continue Reading
CVE-2024-9798 Health endpoint offers list of onboarded services to unauthenticated users

The health endpoint is public so everybody can see a list of all services. It is potentially valuable information for...Read More ...

Continue Reading
CVE-2024-7048 IDOR in open-webui/open-webui

In version v0.3.8 of open-webui, an improper privilege management vulnerability exists in the API endpoints GET /api/v1/documents/ and POST /rag/api/v1/doc. This vulnerability allows a lower-privilege ...

Continue Reading
CVE-2024-9685 Notification for Telegram <= 3.3.1 – Missing Authorization to Authenticated (Subscriber+) Send Telegram Test Message

The Notification for Telegram plugin for WordPress is vulnerable to unauthorized test message sending due to a missing capability check on the 'nftb_test_action' function in versions up to, ...

Continue Reading

Back to Main

Subscribe for the latest news: