Exploit for Incorrect Permission Assignment for Critical Resource in Hasura Graphql Engine

# CVE-2022-46792 Hasura GraphQL Engine before 2.15.2 mishandles...Read More ...

Continue Reading

CVSS3 - HIGH

Security Bulletin: GraphQL Denial of Service security vulnerability CVE-2022-37734

## Summary GraphQL has a Denial of Service security vulnerability CVE-2022-37734 in GraphQL-java ## Vulnerability Details ** CVEID: **[CVE-2022-37734]() ** DESCRIPTION: **GraphQL Java is vulnerable to ...

Continue Reading

CVSS3 - HIGH

This Week in Spring – December 20th, 2022

![](https://github.com/joshlong/blog-images/raw/master/happy-holidays/happy-holidays-2022-small.png) Hi, Spring fans! It's the 20th of December, 2022 as I write this, which means that by the time we m ...

Continue Reading
(RHSA-2022:9023) Important: Red Hat build of Quarkus 2.13.5 release and security update

This release of Red Hat build of Quarkus 2.13.5 includes security updates, bug fixes, and enhancements. For more information, see the release notes page listed in the References section. Security Fix( ...

Continue Reading

CVSS3 - CRITICAL

Security Bulletin: Multiple vulnerabilities have been identified in IBM WebSphere Application Server Liberty shipped with IBM Tivoli Netcool Impact (CVE-2022-24839, CVE-2022-37734, CVE-2022-34165)

## Summary IBM WebSphere Application Server Liberty is shipped with IBM Tivoli Netcool Impact as part of its server infrastructure. IBM Tivoli Netcool Impact has addressed the applicable CVEs. ## Vuln ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Legitify – Detect And Remediate Misconfigurations And Security Risks Across All Your GitHub Assets

[![](https://blogger.googleusercontent.com/img/a/AVvXsEiQ-eQPrgaZqKEE2ItoCCXdxL8S7bniTLA_RD7KXsCu9VIQj56h5wsjPdZo0G6YmTMv3Tm4JXDfLoL9R0181w2xolxwchTBDUpP_yyvz-prWRV_AHE3ATPCVAjQdTS_aze0W7hZKqE8RVal85f ...

Continue Reading
What ChatGPT know about API Security?

There is no doubt that you heard about and seen the latest [OpenAI's]() brilliant called [ChatGPT](). It can write poems, speak many languages, answer questions, play chess, make code and impress ever ...

Continue Reading
CVE-2022-46792

Hasura GraphQL Engine before 2.15.2 mishandles row-level authorization in the Update Many API for Postgres backends. The fixed versions are 2.10.2, 2.11.3, 2.12.1, 2.13.2, 2.14.1, and 2.15.2. (Version ...

Continue Reading

Back to Main

Subscribe for the latest news: