Sensitive Information leak via Script File in TinaCMS

### Impact Sensitive Information leaked via script File in TinaCMS. Sites building with @tinacms/cli >= 1.0.0 && Read More ...

Continue Reading
(RHSA-2023:0560) Critical: OpenShift Container Platform 4.10.51 security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. Security Fix(es): * jenkins-plugin/scri ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Go SSH library vulnerable to Man-in-the-Middle attacks

The Go SSH library (x/crypto/ssh) by default does not verify host keys, facilitating man-in-the-middle attacks. Default behavior changed in commit e4e2799 to require explicitly registering a hostkey v ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Improper Input Validation in etcd

In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method. The size of a record is stored in the length field of a WAL file and no additional validation is done on t ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

SUSE SLES12 Security Update : openssl-1_1 (SUSE-SU-2023:0309-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0309-1 advisory. - A timing based side channel exists in the ...

Continue Reading
Sensitive Information leak via Script File in TinaCMS

### Impact Sensitive Information leaked via script File in TinaCMS. Sites building with @tinacms/cli >= 1.0.0 && Read More ...

Continue Reading
SUSE SLES15 / openSUSE 15 Security Update : openssl-1_0_0 (SUSE-SU-2023:0305-1)

The remote SUSE Linux SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0305-1 advisory. - A timing based side channel ...

Continue Reading
SUSE SLED15 / SLES15 / openSUSE 15 Security Update : openssl-1_1 (SUSE-SU-2023:0311-1)

The remote SUSE Linux SLED15 / SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0311-1 advisory. - A timing based side ...

Continue Reading

Back to Main

Subscribe for the latest news: