(RHSA-2020:5634) Moderate: OpenShift Container Platform 4.7.0 packages security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the RPM packages ...

Continue Reading
Prototype Pollution in grpc/grpc-node

# Description `grpc` native core package is vulnerable to `Prototype Pollution`. This package allowing for modification of prototype behavior, which may result in Information Disclosure/DoS/RCE. # Pro ...

Continue Reading
Exploit for SQL Injection in Apache Skywalking

Apache SkyWalking ========== Read More ...

Continue Reading
Guide: How to Hack API in 60 minutes or API Threats Simulation with Open-Source Tools

**What is API?** API is the abbreviation for Application Programming Interface, which is a product middle person that permits two applications to converse with one another. ![](https://cdn-images-1.me ...

Continue Reading
CVE-2021-41130

Extensible Service Proxy, a.k.a. ESP is a proxy which enables API management capabilities for JSON/REST or gRPC API services. ESPv1 can be configured to authenticate a JWT token. Its verified JWT clai ...

Continue Reading
Google Extensible Service Proxy Header Forgery

Post ContentRead More ...

Continue Reading
CVE-2021-32781

An out-of-bounds memory read vulnerability was found in envoyproxy/envoy. When using one of the following envoy extensions, it is possible to modify and increase the request or response body size of t ...

Continue Reading
CVE-2021-36155

LengthPrefixedMessageReader in gRPC Swift 1.1.0 and earlier allocates buffers of arbitrary length, which allows remote attackers to cause uncontrolled resource consumption and deny service.Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: