Traefik may display authorization header in the debug logs

### Impact There is a potential vulnerability in Traefik displaying the Authorization header in its debug logs. Traefik uses [oxy](https://github.com/vulcand/oxy) to provide the following features: - ...

Continue Reading
Do more with Azure Spring Apps – scale to zero and enhance productivity

In 2020, Spotify coined the term ["Golden Path”]() to refer to a supported approach and set of components to build and deploy software. Having these paths simplifies the development process, lets ...

Continue Reading
This Week in Spring – December 6th, 2022

Hi, Spring fans! Welcome to another installment of _This Week in Spring_! How are you? You know what I've wanted to do? See my friends on the Spring team in person since the pandemic descended. And, I ...

Continue Reading
kubernetes security update

kubernetes [1.21.14-3] - Addresses CVE-2022-3294 & CVE-2022-3162 [1.21.14-2] - Fixed kubernetes-cni version. [1.21.14-1] - Addresses CVE-2022-3172 olcne [1.4.9-2] - Fix 1.21 kubernetes version to ...

Continue Reading
kubernetes security update

kubernetes [1.21.14-3] - Addresses CVE-2022-3294 & CVE-2022-3162 [1.21.14-2] - Fixed kubernetes-cni version. [1.21.14-1] - Addresses CVE-2022-3172 olcne [1.4.9-2] - Fix 1.21 kubernetes version to ...

Continue Reading
Evolution of API Security – A Practical Guide to Addressing API Threats in 2023

The kind of API security scenarios we witnessed today were never like this from the beginning of time. It has gone to extra lengths to become responsive and productive as it’s now. _How was it ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

8 KB is not enough: why WAFs can’t protect APIs

WAFs were a top-notch security instrument a decade ago, but now they are not. They fail to protect APIs. Meanwhile, the number of API-specific vulnerabilities grew more than twofold in 2022. According ...

Continue Reading
Hyperledger: Remote denial of service in HyperLedger Fabric

How to reproduce 1.Bring up the test network.(https://hyperledger-fabric.readthedocs.io/en/latest/test_network.html#bring-up-the-test-network) 2.Run the PoC. ```bash go run poc.go -server=192.168.0.20 ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: