K000138628 : python-pip vulnerabilities CVE-2021-3572 and CVE-2023-5752

Security Advisory Description CVE-2021-3572 A flaw was found in python-pip in the way it handled Unicode separators in git references. A remote attacker could possibly use this issue to install a di ...

Continue Reading
Siemens Polarion ALM

As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities ...

Continue Reading
Security Bulletin: There is a vulnerability in tinymce-6.3.1.min.js used by IBM Maximo Asset Management application (CVE-2023-45819 and CVE-2023-45818)

Summary There is a vulnerability in tinymce-6.3.1.min.js used by IBM Maximo Asset Management application. Vulnerability Details ** CVEID: CVE-2023-45819 DESCRIPTION: **TinyMCE is vulnerable to cross- ...

Continue Reading
ReDos vulnerability of XMLFeedSpider

Impact The following parts of the Scrapy API were found to be vulnerable to a ReDoS attack: The XMLFeedSpider class or any subclass that uses the default node iterator: iternodes, as well as direct ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (February 5, 2024 to February 11, 2024)

Did you know we're running a Bug Bounty Extravaganza again? Earn over 6x our usual bounty rates, up to $10,000, for all vulnerabilities submitted through February 29th, 2024 when you opt to have ...

Continue Reading
CVE-2023-46136 vulnerabilities

Vulnerabilities for packages: py3-tensorflow-serving-api, kubeflow-jupyter-web-app, py3-werkzeug,...Read More ...

Continue Reading
GHSA-G4MX-Q9VG-27P4 vulnerabilities

Vulnerabilities for packages: py3-tensorflow-serving-api, py3-urllib3-1, kubeflow-jupyter-web-app,...Read More ...

Continue Reading
GHSA-HRFV-MQP8-Q5RW vulnerabilities

Vulnerabilities for packages: py3-tensorflow-serving-api, kubeflow-jupyter-web-app, py3-werkzeug,...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: