CVE-2023-37261

OpenComputers is a Minecraft mod that adds programmable computers and robots to the game. This issue affects every version of OpenComputers with the Internet Card feature enabled; that is, OpenCompute ...

Continue Reading
Threat Roundup for June 30 to July 7

![Threat Roundup for June 30 to July 7](https://blog.talosintelligence.com/content/images/2023/07/threat-roundup.jpg) Today, Talos is publishing a glimpse into the most prevalent threats we've observe ...

Continue Reading
Pipelines do not validate child UIDs

### Summary Pipelines do not validate child UIDs, which means that a user that has access to create TaskRuns can create their own Tasks that the Pipelines controller will accept as the child Task. We ...

Continue Reading
Pipelines do not validate child UIDs

### Summary Pipelines do not validate child UIDs, which means that a user that has access to create TaskRuns can create their own Tasks that the Pipelines controller will accept as the child Task. We ...

Continue Reading
CVE-2023-37264

Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 0.35.0, pipelines do not validate child UIDs, which means that a user that has access to ...

Continue Reading
CVE-2023-37203

Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could hav ...

Continue Reading
Ubuntu 20.04 LTS : Firefox vulnerabilities (USN-6201-1)

The remote Ubuntu 20.04 LTS host has packages installed that are affected by multiple vulnerabilities as referenced in the USN-6201-1 advisory. - When Firefox is configured to block storage of all c ...

Continue Reading
Fedora 38 : firefox (2023-b9b15ebaad)

The remote Fedora 38 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2023-b9b15ebaad advisory. - When Firefox is configured to block storage of ...

Continue Reading

Back to Main

Subscribe for the latest news: