Critical XXE in Apache Tika (tika-parser-pdf-module) in Apache Tika 1.13 through and including 3.2.1 on all platforms allows an attacker to carry out XML External Entity injection via a crafted XFA fi ...
Continue ReadingAugust 20, 2025
The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. There exists an vulnerability causing an abort() to be called in ...
Continue ReadingAugust 19, 2025
Apache RocketMQ [![Build Status][maven-build-image]][maven-build-url] [![CodeCov][codecov-image]][codecov-url] [![Maven Central][maven-central-image]][maven-central-url] [![Release][release-image]][re ...
Continue ReadingAugust 18, 2025
Dolphin Scheduler Official Website dolphinscheduler.apache.org ============ Design Features DolphinScheduler is a distributed and extensible workflow scheduler platform with powerful DAG visu ...
Continue ReadingAugust 18, 2025
Apache RocketMQ Apache RocketMQ is a distributed messaging and streaming platform with low latency, high performance and reliability, trillion-level capacity and flexible scalability. It offe ...
Continue ReadingAugust 18, 2025
Name of the Vulnerable Software and Affected Versions: HTTP/2 implementations (affected versions not specified) AMPHP Apache Tomcat Eclipse Foundation F5 Fastly gRPC Mozilla Netty Suse Linux Varnish S ...
Continue ReadingAugust 18, 2025
This update fixes the following issues: golang-github-prometheus-prometheus was updated to version 2.53.4: Security issues fixed: CVE-2023-45288: Require Go >= 1.23 for building (bsc#1236516) ...
Continue ReadingAugust 14, 2025
Overview A vulnerability has been discovered within many HTTP/2 implementations allowing for denial of service (DoS) attacks through HTTP/2 control frames. This vulnerability is colloquially known as ...
Continue ReadingAugust 13, 2025
Back to Main