RHEL 8 : container-tools:2.0 (RHSA-2024:0758)

The remote Redhat Enterprise Linux 8 host has packages installed that are affected by a vulnerability as referenced in the RHSA-2024:0758 advisory. runc is a CLI tool for spawning and running contain ...

Continue Reading
Path Traversal

Gradio is vulnerable to Path Traversal. The vulnerability is due to improper validation when parsing a user supplied JSON value inan API request. This issue can be exploited by an attacker read am arb ...

Continue Reading
Insecure Deserialisation

clearml is vulnerable to Insecure Deserialisation. The vulnerability is due to Deserialisation of untrusted data. An attacker can upload a malicious pickle file via the project API to run arbitrary co ...

Continue Reading
Cross-site Scripting (XSS)

CKEditor4 is vulnerable to Cross-site Scripting. The vulnerability is due to editor instances that have enabled full-page editing mode or enabled CDATA elements in the Advanced Content Filtering confi ...

Continue Reading
Arbitrary Code Execution

Graylog is vulnerable to Arbitrary Code Execution. The vulnerability is due to a lack of class validation, which allows an attacker to send a HTTP PUT request to the /api/system/cluster_config/ endpoi ...

Continue Reading
CentOS 8 : tomcat (CESA-2023:7065)

The remote CentOS Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the CESA-2023:7065 advisory. tomcat: Fix for was incomplete (CVE-2023-24998) W ...

Continue Reading
CentOS 8 : thunderbird (CESA-2023:7500)

The remote CentOS Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the CESA-2023:7500 advisory. On some systemsdepending on the graphics settings an ...

Continue Reading
CentOS 8 : thunderbird (CESA-2023:1802)

The remote CentOS Linux 8 host has a package installed that is affected by multiple vulnerabilities as referenced in the CESA-2023:1802 advisory. OCSP revocation status of recipient certificates was ...

Continue Reading

Back to Main

Subscribe for the latest news: