CVE-2022-48433

In JetBrains IntelliJ IDEA before 2023.1 the NTLM hash could leak through an API method used in the IntelliJ IDEA built-in web server.Read More ...

Continue Reading
ChatGPT Injection: a new type of API Abuse attack may steal your OpenAI API credits

ChatGPT is spreading like wildfire all over the internet, being used in everything from casual tools to cybersecurity and even industrial applications. It's so popular, I wouldn't be shocked if it sta ...

Continue Reading
Context Propagation with Project Reactor 2 – The bumpy road of Spring Cloud Sleuth

Spring Cloud Sleuth recently [became Micrometer Tracing](), part of the Micrometer project. Most of the tracing instrumentation is centered within Micrometer under the new [Observability API](). The g ...

Continue Reading
Smart Mobility has a Blindspot When it Comes to API Security

[![Automotive Security](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The emergence of smart mobility services and applications ...

Continue Reading
Oracle Linux 8 : openssl (ELSA-2023-12213)

The remote Oracle Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2023-12213 advisory. - There is a type confusion vulnerability relating ...

Continue Reading

CVSS3 - HIGH

Security Bulletin: IBM Tivoli Netcool/OMNIbus Transport Module Common Integration Library is affected by vulnerability in Apache Kafka (CVE-2023-25194)

## Summary Apache Kafka is used by IBM Tivoli Netcool/OMNIbus Transport Module Common Integration Library as part of the Kafka integration. The latest patch includes Apache Kafka 3.4.0 to fix the vuln ...

Continue Reading

CVSS3 - HIGH

CBL Mariner 2.0 Security Update: nodejs (CVE-2023-23918)

The version of nodejs installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2023-23918 advisory. - A privile ...

Continue Reading

CVSS3 - HIGH

CBL Mariner 2.0 Security Update: kubevirt (CVE-2022-1798)

The version of kubevirt installed on the remote CBL Mariner 2.0 host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the CVE-2022-1798 advisory. - A path t ...

Continue Reading

CVSS3 - MEDIUM

Back to Main

Subscribe for the latest news: