CVE-2024-45302 CRLF Injection in RestSharp’s `RestRequest.AddHeader` method

RestSharp is a Simple REST and HTTP API Client for .NET. The second argument to RestRequest.AddHeader (the header value) is vulnerable to CRLF injection. The same applies to RestRequest.AddOrUpdateHea ...

Continue Reading
Insecure Platform Key (PK) used in UEFI system firmware signature

Overview A vulnerability in the user of hard-coded Platform Keys (PK) within the UEFI framework, known as PKfail, has been discovered. This flaw allows attackers to bypass critical UEFI security mecha ...

Continue Reading
pgAdmin 8.4 Remote Code Execution Exploit

pgAdmin versions 8.4 and below are affected by a remote code execution vulnerability through the validate binary path API. This vulnerability allows attackers to execute arbitrary code on the server h ...

Continue Reading
Amazon Linux 2 : docker (ALASNITRO-ENCLAVES-2024-045)

The version of docker installed on the remote host is prior to 25.0.3-1. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2NITRO-ENCLAVES-2024-045 advisory. A malicious ...

Continue Reading
Amazon Linux 2 : docker (ALASDOCKER-2024-044)

The version of docker installed on the remote host is prior to 25.0.3-1. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2DOCKER-2024-044 advisory. A malicious HTTP sen ...

Continue Reading
Malicious code in as-rest-api-v6 (npm)

-= Per source details. Do not edit below this line.=- Source: ghsa-malware (0ce680287c711409073b5144305ae85ce29123f6841998697d979ee6414baddc) Any computer that has this package installed or running sh ...

Continue Reading
Malicious code in as-rest-api (npm)

-= Per source details. Do not edit below this line.=- Source: ghsa-malware (00a576994460aeca57d9642938bbd4c214c2fc5138f9513388b070cb882fde29) Any computer that has this package installed or running sh ...

Continue Reading
Malicious code in noblox.js-api (npm)

-= Per source details. Do not edit below this line.=- Source: ghsa-malware (6617325d384923ff6c3550fcdbbca7335b83dfe3648f2218ad700e0ef12f601f) Any computer that has this package installed or running sh ...

Continue Reading

Back to Main

Subscribe for the latest news: