### Summary API interfaces with unauthorized access will leak sensitive information /kubepi/api/v1/systems/operation/logs/search /kubepi/api/v1/systems/login/logs/search This vulnerability also exists ...
Continue ReadingJanuary 10, 2023
### Summary API interfaces with unauthorized access will leak sensitive information /api/v1/clusters/kubeconfig/ ### Details Routes using v1 without any restrictions Directly pass in `downloadKubeconf ...
Continue ReadingJanuary 10, 2023
An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed a repository-scoped token with read/write access to modify Action Workflow files without a Workflow sco ...
Continue ReadingJanuary 10, 2023
Welcome to 2023. After the pandemic upended how we work, learn, play, and manage our lives, we find ourselves more connected than ever, with more convenient access to an ever-wider range of online too ...
Continue ReadingJanuary 09, 2023
## Summary IBM Sterling B2B Integrator has addressed the security vulnerabilities in jackson-databind in B2B API. ## Vulnerability Details ** CVEID: **[CVE-2019-20330]() ** DESCRIPTION: **A lacking of ...
Continue ReadingJanuary 09, 2023
Welcome to 2023. After the pandemic upended how we work, learn, play, and manage our lives, we find ourselves more connected than ever, with more convenient access to an ever-wider range of online too ...
Continue ReadingJanuary 09, 2023
[]() Earlier this year, threat actors infiltrated [Mailchimp](), the ...
Continue ReadingJanuary 09, 2023
[]() The threat actors behind the **Kinsing** cryptojacking ...
Continue ReadingJanuary 09, 2023
Back to Main