CVE-2023-37916

KubePi is an opensource kubernetes management panel. The endpoint /kubepi/api/v1/users/search?pageNum=1&&pageSize=10 leak password hash of any user (including admin). A sufficiently motivated ...

Continue Reading
CVE-2023-37918

Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. A vulnerability has been found in Dapr that allows bypassing API token authentication, which is u ...

Continue Reading
Security Bulletin: Vulnerabilities in Node.js affects IBM Voice Gateway

## Summary Security Vulnerabilities in Node.js affects IBM Voice Gateway. The vulnerability has been addressed. ## Vulnerability Details ** CVEID: **[CVE-2023-30581]() ** DESCRIPTION: **Node.js could ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-3300

HashiCorp Nomad and Nomad Enterprise 0.11.0 up to 1.5.6 and 1.4.1 HTTP search API can reveal names of available CSI plugins to unauthenticated users or users without the plugin:read policy. Fixed in 1 ...

Continue Reading
Exploit for Server-Side Request Forgery in Rbaskets Request Baskets

Thank you to @beet1e(https://github.com/b33t1e) from Shanghai Ji...Read More ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Add Unique Asset Context with Custom Attributes in CSAM

There is no such thing as “too much context” when it comes to asset management. Continuous discovery and comprehensive, normalized asset data create the foundation for streamlined risk detec ...

Continue Reading
CVE-2023-3300

HashiCorp Nomad and Nomad Enterprise 0.11.0 up to 1.5.6 and 1.4.1 HTTP search API can reveal names of available CSI plugins to unauthenticated users or users without the plugin:read policy. Fixed in 1 ...

Continue Reading
SUSE SLED15 / SLES15 / openSUSE 15 Security Update : SUSE Manager Client Tools (SUSE-SU-2023:2917-1)

The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 / openSUSE 15 host has a package installed that is affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:2917-1 advisor ...

Continue Reading

Back to Main

Subscribe for the latest news: