Medium: python-rsa

**Issue Overview:** A flaw was found in python-rsa, where it is vulnerable to Bleichenbacher timing attacks. This flaw allows an attacker, via the RSA decryption API, to decrypt parts of the ciphertex ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

PimpMyLog v1.7.14 – Improper access control

Post ContentRead More ...

Continue Reading
Microsoft validation error allowed state actor to access user email of government agencies and others

Microsoft is getting criticized for the way in which it handled a serious security incident that allowed a suspected Chinese espionage group to access user email from approximately 25 organizations, i ...

Continue Reading
Docker Hub images found to expose secrets and private keys

Numerous Docker images shared on Docker Hub are exposing sensitive data, according to a [study]() conducted by researchers at the German university RWTH Aachen. Needless to say, this poses a significa ...

Continue Reading
Foxit Reader checkThisBox type confusion vulnerability

# Talos Vulnerability Report ### TALOS-2023-1795 ## Foxit Reader checkThisBox type confusion vulnerability ##### July 19, 2023 ##### CVE Number CVE-2023-32664 ##### SUMMARY A type confusion vulnerabil ...

Continue Reading
SUSE SLES15 Security Update : MozillaFirefox, MozillaFirefox-branding-SLE (SUSE-SU-2023:2849-1)

The remote SUSE Linux SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:2849-1 advisory. - When Firefox is configured to ...

Continue Reading
Microsoft 365 (Office) App Code Execution (December 2021)

The Windows 'Microsoft 365 (Office)' app installed on the remote host is affected by a code execution vulnerability. An attacker who successfully exploited the vulnerability could execute arbitrary co ...

Continue Reading
Q2-2023 API ThreatStats™ Report: API Exploits Are Everywhere: from NVIDIA to Reddit and more!

Our[ **Q2-2023 API ThreatStats™ report**]() is out. It provides API builders, defenders, breakers, and decision-makers with a comprehensive look at the API security vulnerabilities, threats and e ...

Continue Reading

Back to Main

Subscribe for the latest news: