The source package ocsinventory-server has been updated to address the API change in php-cas due to [CVE-2022-39369](https://security-tracker.debian.org/tracker/CVE-2022-39369), see DLA 3485-1 for det ...
Continue ReadingJuly 08, 2023
SQLFluff is a SQL linter. Prior to version 2.1.2, in environments where untrusted users have access to the config files, there is a potential security vulnerability where those users could use the `li ...
Continue ReadingJuly 08, 2023
SQLFluff is a SQL linter. Prior to version 2.1.2, in environments where untrusted users have access to the config files, there is a potential security vulnerability where those users could use the `li ...
Continue ReadingJuly 08, 2023
Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1. Uptime Kuma allows authenticated users to install plugins from an official list of plugins. ...
Continue ReadingJuly 08, 2023
Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in versions prior to 1.22.1, which may lead to remote code execution. Uptime Kuma a ...
Continue ReadingJuly 08, 2023
CC: Tweaked is a mod for Minecraft which adds programmable computers, turtles, and more to the game. Prior to versions 1.20.1-1.106.0, 1.19.4-1.106.0, 1.19.2-1.101.3, 1.18.2-1.101.3, and 1.16.5-1.101. ...
Continue ReadingJuly 08, 2023
github.com/authzed/spicedb is vulnerable to Improper Access Control. The vulnerability is caused when a negative authorization decision is based on the results of `LookupResources`. The `Check` API sh ...
Continue ReadingJuly 08, 2023
github.com/openfga/openfga is vulnerable to Denial Of Service. The vulnerability exists due the `Check` or `ListObjects` calls, which allow attackers to crash the system.Read More ...
Continue ReadingJuly 08, 2023
Back to Main