CVE-2023-0683

A valid, authenticated XCC user with read only access may gain elevated privileges through a specifically crafted API call.Read More ...

Continue Reading
Security Bulletin: Vulnerability Identified in Cloud Pak System [CVE-2020-4914]

## Summary Invalidate session vulnerability identified in IBM Cloud Pak System UI and Rest API at logout. IBM Cloud Pak System has addressed vulnerability. [CVE-2020-4914] ## Vulnerability Details ** ...

Continue Reading
Gitlab — Multiple Vulnerabilities

Gitlab reports: Cross-site scripting in "Maximum page reached" page Private project guests can read new changes using a fork Mirror repository error reveals password in Settings UI DOS and high resour ...

Continue Reading
Security Bulletin: Vulnerability in Apache Kafka may affect IBM Business Automation Workflow – CVE-2023-25194

## Summary IBM Business Automation Workflow packages a copy Apache Kafka client library. A security vulnerability has been reported for the same version of Apache Kafka. ## Vulnerability Details ** CV ...

Continue Reading

CVSS3 - HIGH

CVE-2023-1777

Mattermost allows an attacker to request a preview of an existing message when creating a new message via the createPost API call, disclosing the contents of the linked message.Read More ...

Continue Reading
FreeBSD : Gitlab — Multiple Vulnerabilities (54006796-cf7b-11ed-a5d5-001b217b3468)

The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by multiple vulnerabilities as referenced in the 54006796-cf7b-11ed-a5d5-001b217b3468 advisor ...

Continue Reading
Secure view can be bypassed by using internal API endpoint

## Description ### Impact The secure view feature of the rich documents app can be bypassed by using unprotected internal API endpoint of the rich documents app. ### Patches It is recommended that the ...

Continue Reading
CVE-2023-1747

A vulnerability has been found in IBOS up to 4.5.4 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /?r=email/api/mark&op=delFromSend. The manipul ...

Continue Reading

Back to Main

Subscribe for the latest news: