Avoid The (Automated) Nightmare Before Christmas

While Christmas is often seen by most as a joyous time to be spent with family and friends, exchanging good wishes and gifts, there are those who seek to exploit it. For fraudsters, this time of the y ...

Continue Reading
Buyer Beware! Account Takeover Attacks Surging This Shopping Season

The prevalence of [Account Takeover (ATO)]() attacks continues to rise, as the threat creeps its way [to the top of the list of security concerns]() for organizations today. Last year, Imperva recorde ...

Continue Reading
CVE-2022-47551

Apiman 1.5.7 through 2.2.3.Final has insufficient checks for read permissions within the Apiman Manager REST API. The root cause of the issue is the Apiman project's accidental acceptance of a large c ...

Continue Reading
CVE-2022-23536

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
pgadmin4 vulnerable to Code Injection

The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. The utility is executed by the ...

Continue Reading

CVSS3 - HIGH

Cortex’s Alertmanager can expose local files content via specially crafted config

### Impact A local file inclusion vulnerability exists in Cortex versions v1.13.0, v1.13.1 and v1.14.0, where a malicious actor could remotely read local files as a result of parsing maliciously craft ...

Continue Reading
CVE-2022-43887

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
pgadmin4 vulnerable to Code Injection

The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. The utility is executed by the ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: