Security Bulletin: IBM Security Verify Governance has multiple vulnerabilities

Summary Multiple security vulnerabilities have been addressed in an update for IBM Security Verify Governance. Vulnerability Details ** CVEID: CVE-2022-31160 DESCRIPTION: **jQuery UI is vulnerable to ...

Continue Reading
CVE-2024-22018

A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the --allow-fs-read flag is used. This flaw arises from an inadequate permission model that fa ...

Continue Reading
CVE-2024-5178 Incomplete Input Validation in SecurelyAccess API

ServiceNow has addressed a sensitive file read vulnerability that was identified in the Washington DC, Vancouver, and Utah Now Platform releases. This vulnerability could allow an administrative user ...

Continue Reading
CVE-2024-5178 Incomplete Input Validation in SecurelyAccess API

ServiceNow has addressed a sensitive file read vulnerability that was identified in the Washington DC, Vancouver, and Utah Now Platform releases. This vulnerability could allow an administrative user ...

Continue Reading
CVE-2024-21832 PingFederate REST API Data Store Injection

A potential JSON injection attack vector exists in PingFederate REST API data stores using the POST method and a JSON request...Read More ...

Continue Reading
Cache driver GetBlob() allows read access to any blob without access control check

Summary Cache driver GetBlob() allows read access to any blob without access control check Details If a Zot accessControl policy allows users read access to some repositories but restricts read access ...

Continue Reading
SUSE: Security Advisory (SUSE-SU-2024:2371-1)

The remote host is missing an update for...Read More ...

Continue Reading
BIT-mediawiki-2024-40598

An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1. The API can expose suppressed information for log events. (The log_deleted attribute is not applied to...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: