Security Bulletin: IBM Security Guardium is affected by an information leak vulnerability (CVE-2023-44483)

Summary IBM Security Guardium has addressed this vulnerability with updates. Vulnerability Details ** CVEID: CVE-2023-44483 DESCRIPTION: **Apache Santuario could allow a remote authenticated attacker ...

Continue Reading
Any authenticated user may obtain private message details from other users on the same instance

Summary Users can report private messages, even when they're neither sender nor recipient of the message. The API response to creating a private message report contains the private message itself ...

Continue Reading
GL.iNet Unauthenticated Remote Command Execution Exploit

A command injection vulnerability exists in multiple GL.iNet network products, allowing an attacker to inject and execute arbitrary shell commands via JSON parameters at the gl_system_log and gl_crash ...

Continue Reading
Security Testing: Types, Tools, and Best Practices

Opening Note: Understanding the Core Concepts of Security Analysis Continual developments in technology have elevated the significance of security analysis, a critical phase in software design. You ca ...

Continue Reading
CVE-2024-23649

Lemmy is a link aggregator and forum for the fediverse. Starting in version 0.17.0 and prior to version 0.19.1, users can report private messages, even when they're neither sender nor recipient o ...

Continue Reading
(RHSA-2024:0419) Moderate: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): c-ares: Heap buffer over read in ares_parse_soa_reply (CVE-2020-22217) ...

Continue Reading
Qualys WAS Unveils New Features in an Upgraded User Interface

Qualys Web Application Scanning (WAS) has been at the forefront of web application and API security innovation, and today, we're excited to announce a significant leap - the launch of our New Use ...

Continue Reading
Upgrade to New UI of Qualys Web Application Scanning (WAS): Bringing You Enhanced Web Application Security

In the dynamic world of cybersecurity, staying ahead means constantly evolving. At Qualys, we understand that the bedrock of outstanding security is continuous improvement and innovation. That's ...

Continue Reading

Back to Main

Subscribe for the latest news: