CBL Mariner 2.0 Security Update: moby-engine (CVE-2024-24557)

The version of moby-engine installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2024-24557 advisory. Moby is ...

Continue Reading
CBL Mariner 2.0 Security Update: kubernetes (CVE-2023-5408)

The version of kubernetes installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2023-5408 advisory. A privile ...

Continue Reading
Code Injection

flowise is vulnerable to Code Injection. The vulnerability is due to a lack of sanitization of the fileName body parameter in the /api/v1/openai-assistants-file endpoint in index.ts. An attacker can e ...

Continue Reading
What’s new in the MSRC Report Abuse Portal and API

The Microsoft Security Response Center (MSRC) has always been at the forefront of addressing cyber threats, privacy issues, and abuse arising from Microsoft Online Services. Building on our commitment ...

Continue Reading
Exploit for CVE-2024-34102

🚨 CVE-2024-34102 Exploit Script 🚨 Description This script exploits a Server-Side Request Forgery (SSRF) vulnerability in Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8, and earlier. ...

Continue Reading
CVE-2024-39322 aimeos/ai-admin-jsonadm improper access control vulnerability allows editors to remove required records

aimeos/ai-admin-jsonadm is the Aimeos e-commerce JSON API for administrative tasks. In versions prior to 2020.10.13, 2021.10.6, 2022.10.3, 2023.10.4, and 2024.4.2, improper access control allows edito ...

Continue Reading
K000140250: Expat vulnerability CVE-2023-52426

Security Advisory Description libexpat through 2.5.0 allows recursive XML Entity Expansion if XML_DTD is undefined at compile time. (CVE-2023-52426) Impact There is no impact; F5 products are not affe ...

Continue Reading
K000140251: Python vulnerabilities CVE-2022-48564 and CVE-2022-48566

Security Advisory Description CVE-2022-48564 read_ints in plistlib_._py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Pro ...

Continue Reading

Back to Main

Subscribe for the latest news: