Cache Poisoning

Moby is vulnerable to Cache Poisoning. The vulnerability is due to improper cache configuration when the image is built FROM scratch. This issue can be exploited by an attacker to poison the cache and ...

Continue Reading
Important Photon OS Security Update – PHSA-2024-5.0-0198

Updates of ['linux-rt', 'linux', 'openssl', 'linux-secure'] packages of Photon OS have been...Read More ...

Continue Reading
Authentication flaw

The MachineSense application programmable interface (API) is improperly protected and can be accessed without authentication. A remote attacker could retrieve and modify sensitive information without ...

Continue Reading
CVE-2024-22319

IBM Operational Decision Manager 8.10.3, 8.10.4, 8.10.5.1, 8.11, 8.11.0.1, and 8.12.0.1 is susceptible to remote code execution attack via JNDI injection when passing an unchecked argument to a certai ...

Continue Reading
Cross site request forgery (csrf)

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29. This is due to missing or incorrect nonce validation on the r ...

Continue Reading
Design/Logic Flaw

The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the register_reference() function in all versions up to, and inc ...

Continue Reading
Design/Logic Flaw

IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.10 could allow an attacker on the organization's local network to escalate their privileges due to unauthorized API acces ...

Continue Reading
Authentication flaw

The MachineSense application programmable interface (API) is improperly protected and can be accessed without authentication. A remote attacker could retrieve and modify sensitive information without ...

Continue Reading

Back to Main

Subscribe for the latest news: