BIT-tensorflow-2021-29519

TensorFlow is an end-to-end open source platform for machine learning. The API of tf.raw_ops.SparseCross allows combinations which would result in a CHECK-failure and denial of service. This is becaus ...

Continue Reading
BIT-gitlab-2021-22171

Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim's API token if they click on a maliciously crafted linkRead More ...

Continue Reading
BIT-gitlab-2021-22224

A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the...Read More ...

Continue Reading
BIT-gitlab-2021-22224

A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 and 14.0.2 allowed an attacker to call mutations as the...Read More ...

Continue Reading
BIT-tensorflow-2020-26267

In affected versions of TensorFlow the tf.raw_ops.DataFormatVecPermute API does not validate the src_format and dst_format attributes. The code assumes that these two arguments define a permutation of ...

Continue Reading
BIT-gitlab-2021-22168

A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting from version...Read More ...

Continue Reading
BIT-gitlab-2021-22210

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When querying the repository branches through API, GitLab was ignoring a query parameter and returning a conside ...

Continue Reading
BIT-gitlab-2021-22210

An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When querying the repository branches through API, GitLab was ignoring a query parameter and returning a conside ...

Continue Reading

Back to Main

Subscribe for the latest news: