My current least favorite thing about the churn of social media that I've seen over the past week is waves of stories, posts and videos saying that every U.S. citizen's Social Security numbe ...
Continue ReadingAugust 22, 2024
Summary Several API endpoints can be accessed by users without correct authentication/authorization. The main API endpoints affected by this: /api/v3/crypto/certificatekeypairs/<uuid>/v ...
Continue ReadingAugust 22, 2024
Summary Several API endpoints can be accessed by users without correct authentication/authorization. The main API endpoints affected by this: /api/v3/crypto/certificatekeypairs/<uuid>/v ...
Continue ReadingAugust 22, 2024
Impact The REXML gem before 3.3.6 has a DoS vulnerability when it parses an XML that has many deep elements that have same local name attributes. If you need to parse untrusted XMLs with tree parser A ...
Continue ReadingAugust 22, 2024
Impact The REXML gem before 3.3.6 has a DoS vulnerability when it parses an XML that has many deep elements that have same local name attributes. If you need to parse untrusted XMLs with tree parser A ...
Continue ReadingAugust 22, 2024
REXML is an XML toolkit for Ruby. The REXML gem before 3.3.6 has a DoS vulnerability when it parses an XML that has many deep elements that have same local name attributes. If you need to parse untrus ...
Continue ReadingAugust 22, 2024
REXML is an XML toolkit for Ruby. The REXML gem before 3.3.6 has a DoS vulnerability when it parses an XML that has many deep elements that have same local name attributes. If you need to parse untrus ...
Continue ReadingAugust 22, 2024
authentik is an open-source Identity Provider. Several API endpoints can be accessed by users without correct authentication/authorization. The main API endpoints affected by this are /api/v3/crypto/c ...
Continue ReadingAugust 22, 2024
Back to Main