CVE-2024-24789 vulnerabilities

Vulnerabilities for packages: k3s, nri-mongodb, helm-push, go-md2man, git-lfs, kaf, keda, kubernetes-csi-livenessprobe, thanos, metacontroller, metallb, newrelic-prometheus-configurator, nri-couchbase ...

Continue Reading
BIT-argo-cd-2024-37152

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. The vulnerability allows unauthorized access to the sensitive settings exposed by /api/v1/settings endpoint without authentic ...

Continue Reading
Exploit for Path Traversal in Wso2 Api Manager

CVE-2022-29464 A preauth arbitrary file upload that leads to RCE in WSO2 Summary of the CVE CVE-2022-29464 is a RCE vulnerability for WSO2 discovered by Orange Tsai. A unauthenticated arbitrary file ...

Continue Reading
Symlink bypasses filesystem sandbox

Summary If the preopened directory has a symlink pointing outside, WASI programs can traverse the symlink and access host filesystem if the caller sets both oflags::creat and rights::fd_write. Program ...

Continue Reading
Symlink bypasses filesystem sandbox

Summary If the preopened directory has a symlink pointing outside, WASI programs can traverse the symlink and access host filesystem if the caller sets both oflags::creat and rights::fd_write. Program ...

Continue Reading
Fedora: Security Advisory for qt6-qtlocation (FEDORA-2024-bfb8617ba3)

The remote host is missing an update for...Read More ...

Continue Reading
Fedora: Security Advisory for glances (FEDORA-2024-b8e474fbd3)

The remote host is missing an update for...Read More ...

Continue Reading
Fedora: Security Advisory for qt5-qtsensors (FEDORA-2024-2e27372d4c)

The remote host is missing an update for...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: