Exploit for Vulnerability in Gitlab

# CVE-2021-4191 - GitLab User Enumeration GitLab is a widely-us...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Exploit for Vulnerability in Gitlab

# CVE-2021-4191 - GitLab User Enumeration GitLab is a widely-us...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

2023 OWASP Top-10 Series: Introduction

In early June 2023, OWASP released the final version of the OWASP API Security Top-10 list update. At that time we published a [“hot take” on this final version]() and followed that up with ...

Continue Reading
Microsoft Edge (Chromium) < 114.0.1901.183 / 115.0.1901.183 Multiple Vulnerabilities

The version of Microsoft Edge installed on the remote Windows host is prior to 114.0.1901.183 / 115.0.1901.183. It is, therefore, affected by multiple vulnerabilities as referenced in the July 21, 202 ...

Continue Reading
[SECURITY] Fedora 38 Update: R-jsonlite-1.8.5-2.fc38

A reasonably fast JSON parser and generator, optimized for statistical data and the web. Offers simple, flexible tools for working with JSON in R, and is particularly powerful for building pipelines ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Malicious Package

This package has been identified as malicious. Attackers are using these packages in an ongoing supply chain attack to execute arbitrary code, likely when they are installed. Please read the reference ...

Continue Reading
Dapr API token authentication bypass in HTTP endpoints

### Summary A vulnerability has been found in Dapr that allows bypassing [API token authentication](https://docs.dapr.io/operations/security/api-token/), which is used by the Dapr sidecar to authentic ...

Continue Reading
KubePi may leak password hash of any user

### Summary https://kube.pi/kubepi/api/v1/users/search?pageNum=1&&pageSize=10 leak password of any user (including admin). This leads to password crack attack ### PoC https://drive.google.com/f ...

Continue Reading

Back to Main

Subscribe for the latest news: