github.com/canonical/pebble is vulnerable to a Arbitrary File Read. The vulnerability is due to the read-file API and the associated pebble pull command, allowing unprivileged local users to access fi ...
Continue ReadingApril 09, 2024
Ollama before 0.1.29 has a DNS rebinding vulnerability that can inadvertently allow remote access to the full API, thereby letting an unauthorized user chat with a large language model, delete a model ...
Continue ReadingApril 09, 2024
...Read More ...
Continue ReadingApril 08, 2024
Ollama before 0.1.29 has a DNS rebinding vulnerability that can inadvertently allow remote access to the full API, thereby letting an unauthorized user chat with a large language model, delete a model ...
Continue ReadingApril 08, 2024
An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request to...Read More ...
Continue ReadingApril 08, 2024
The digital landscape is continuously evolving, and with it, the strategies for safeguarding our applications against vulnerabilities. In a recent advisory, CISA & the FBI have highlighted the ...
Continue ReadingApril 08, 2024
Security Advisory Description HTTP/2 incoming headers exceeding the limit are temporarily buffered in nghttp2 in order to generate an informative HTTP 413 response. If a client does not stop sending h ...
Continue ReadingApril 08, 2024
Impact When a authentificated request is made to POST /store-api/account/logout, the cart will be cleared, but the User won't be logged out. This affects only the direct store-api usage, as the P ...
Continue ReadingApril 08, 2024
Back to Main