CVE-2022-23739

An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for escalation of privileges in GraphQL API requests from GitHub Apps. This vulnerability allowed an app i ...

Continue Reading
What’s New in InsightIDR: Q4 2022 in Review

![What’s New in InsightIDR: Q4 2022 in Review](https://blog.rapid7.com/content/images/2023/01/3-mistakes-d-r.jpeg) As we continue to empower security teams with the freedom to focus on what matte ...

Continue Reading
Security Bulletin: There are multiple vulnerabilites that affect IBM Engineering Requirements Quality Assistant On-Premises (CVE-2021-22939, CVE-2021-22931, CVE-2020-7598)

## Summary IBM Engineering Requirements Quality Assistant On-Premises affected by multiple vulnerabilites (CVE-2021-22939, CVE-2021-22931, CVE-2020-7598) which allowed a remote attacker to exploit thi ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2022-47950

A flaw was found in Swift's S3 XML parser. By supplying specially crafted XML files, an authenticated user may coerce the S3 API into returning arbitrary file contents from the host server, resulting ...

Continue Reading
CVE-2015-10059

A vulnerability has been found in s134328 Webapplication-Veganguide and classified as problematic. This vulnerability affects unknown code of the file p05-integration/app/shared/api/apiService.js. The ...

Continue Reading
Microsoft resolves four SSRF vulnerabilities in Azure cloud services

Summary Microsoft recently fixed a set of Server-Side Request Forgery (SSRF) vulnerabilities in four Azure services (Azure API Management, Azure Functions, Azure Machine Learning, and Azure Digital Tw ...

Continue Reading
Microsoft Azure Services Flaws Could’ve Exposed Cloud Resources to Unauthorized Access

[![Microsoft Azure Services](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Four different Microsoft Azure services have been fo ...

Continue Reading
(RHSA-2022:7398) Moderate: OpenShift Container Platform 4.12.0 packages and security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: