Denial of Service in grpc-ts-health-check

Versions of `grpc-ts-health-check` prior to 2.0.0 are vulnerable to Denial of Service. The package exposes an API endpoint that may allow attackers to set the service's health status to failing. This ...

Continue Reading
Security update for mumble (moderate)

An update that contains security fixes can now be installed. Description: This update for mumble fixes the following issues: mumble was updated 1.3.2: * client: Fixed overlay not starting ...

Continue Reading
[SECURITY] Fedora 31 Update: kata-runtime-1.11.1-3.fc31

Kata runtime to run containers in virtual machines Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel a ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: App Connect Enterprise Certified Container is vulnerable to code injection and Denial of Service attacks

## Summary App Connect Enterprise Certified Container Integration Servers and Designers are vulnerable to code injection and Denial of Service attacks due to CVE-2020-7766 and CVE-2020-7768 ## Vulnera ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Denial Of Service (DoS)

servicemesh-proxy is vulnerable to denial of service. An attacker is able to crash the application by sending a malicious packet that specifies a large grpc-timeout, causing envoy to incorrectly calcu ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

gRPC Swift Resource Management Error Vulnerability

gRPC Swift is the open source Swift language implementation of gRPC, which includes a gRPC Swift API and code generator. The API and generated code are provided for gRPC clients and servers and can be ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Security Advisory 0071

## Security Advisory 0071 _._CSAF PDF #### **Date:** January 11th, 2022 Revision | Date | Changes ---|---|--- 1.0 | January 11th, 2022 | Initial release ### Security Advisory 0071 The CVE-ID tracki ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

GraphQL vs gRPC: Which One Creates More Secure APIs?

Learn about the security capabilities of GraphQL and gRPC, how they perform authentication/authorization, and how they compare to REST. In addition, discover common attack vectors for both API framewo ...

Continue Reading

Back to Main

Subscribe for the latest news: