CVE-2025-35965

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11.10 fail to validate the uniqueness and quantity of task actions within the UpdateRunTaskActions GraphQL oper ...

Continue Reading
CVE-2025-35965 DoS in Mattermost Playbooks via Excessive Task Actions

Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11.10 fail to validate the uniqueness and quantity of task actions within the UpdateRunTaskActions GraphQL oper ...

Continue Reading
This Week in Spring – April 22nd, 2025

Hi, Spring fans! Welcome to another installment of This Week in Spring , which I'm writing from magnificent Minneapolis, Minnesota, where I'm recording an amazing Frontend Masters course int ...

Continue Reading
Improper Cache Key Handling

api-platform/core is vulnerable to Improper cache key handling. The vulnerability is due to the isCacheKeySafe() method not effectively preventing caching when followed by the parent::normalize call, ...

Continue Reading
Incorrect Authorization

api-platform/core is vulnerable to Incorrect Authorization. The vulnerability is due to improper access control caused by the use of the Relay special node type, which allows bypassing the configured ...

Continue Reading
Improper Cache Key Handling

api-platform/core is vulnerable to Improper cache key handling. The vulnerability is due to the isCacheKeySafe() method not effectively preventing caching when followed by the parent::normalize call, ...

Continue Reading
Incorrect Authorization

api-platform/core is vulnerable to Incorrect Authorization. The vulnerability is due to improper access control caused by the use of the Relay special node type, which allows bypassing the configured ...

Continue Reading
FreeBSD : Gitlab — Vulnerabilities (ed602f8b-15c2-11f0-b4e4-2cf05da270f3)

The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by multiple vulnerabilities as referenced in the ed602f8b-15c2-11f0-b4e4-2cf05da270f3 advisor ...

Continue Reading

Back to Main

Subscribe for the latest news: