ocsinventory-server – security update

The source package ocsinventory-server has been updated to address the API change in php-cas due to [CVE-2022-39369](https://security-tracker.debian.org/tracker/CVE-2022-39369), see DLA 3485-1 for det ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-36830

SQLFluff is a SQL linter. Prior to version 2.1.2, in environments where untrusted users have access to the config files, there is a potential security vulnerability where those users could use the `li ...

Continue Reading
CVE-2023-36830

SQLFluff is a SQL linter. Prior to version 2.1.2, in environments where untrusted users have access to the config files, there is a potential security vulnerability where those users could use the `li ...

Continue Reading
CVE-2023-36822

Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1. Uptime Kuma allows authenticated users to install plugins from an official list of plugins. ...

Continue Reading
CVE-2023-36821

Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in versions prior to 1.22.1, which may lead to remote code execution. Uptime Kuma a ...

Continue Reading
CVE-2023-37262

CC: Tweaked is a mod for Minecraft which adds programmable computers, turtles, and more to the game. Prior to versions 1.20.1-1.106.0, 1.19.4-1.106.0, 1.19.2-1.101.3, 1.18.2-1.101.3, and 1.16.5-1.101. ...

Continue Reading
Improper Access Control

github.com/authzed/spicedb is vulnerable to Improper Access Control. The vulnerability is caused when a negative authorization decision is based on the results of `LookupResources`. The `Check` API sh ...

Continue Reading
Denial Of Service (DoS)

github.com/openfga/openfga is vulnerable to Denial Of Service. The vulnerability exists due the `Check` or `ListObjects` calls, which allow attackers to crash the system.Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: