Security Bulletin: z/Transaction Processing Facility is affected by vulnerabilities in the Apache Kafka (kafka-clients) and cryptography packages

## Summary The Apache Kafka and cryptography packages are used by the z/TPF system in runtime metrics collection and the z/TPF real-time insights dashboard starter kit. The z/TPF system was updated to ...

Continue Reading

CVSS3 - HIGH

Predictions for 2023 from Latest API Threat Research | API Security Newsletter

March has arrived and is roaring like a very confused lion, at least in the northern hemisphere. And much like in the wild, brood production is increasing. We've already seen some fruits of that labor ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Predictions for 2023 from Latest API Threat Research | API Security Newsletter

March has arrived and is roaring like a very confused lion, at least in the northern hemisphere. And much like in the wild, brood production is increasing. We've already seen some fruits of that labor ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Predictions for 2023 from Latest API Threat Research | API Security Newsletter

March has arrived and is roaring like a very confused lion, at least in the northern hemisphere. And much like in the wild, brood production is increasing. We've already seen some fruits of that labor ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Tenable Nessus 10.x >= 10.2.1 and < 10.4.3 Multiple Vulnerabilities (TNS-2023-11)

According to its self-reported version, the Tenable Nessus application running on the remote host is between 10.2.1 and 10.4.2. It is, therefore, affected by multiple vulnerabilities in OpenSSL prior ...

Continue Reading

CVSS3 - CRITICAL

Tenable Nessus 8.15.x >= 8.15.4 and < 8.15.9 Multiple Vulnerabilities (TNS-2023-10)

According to its self-reported version, the Tenable Nessus application running on the remote host is between 8.15.4 and 8.15.8. It is, therefore, affected by multiple vulnerabilities in OpenSSL prior ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Wago (CVE-2022-45138)

The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated users should be able to use the API. The vulnerability allows an unauthenticated ...

Continue Reading

CVSS3 - CRITICAL

(RHSA-2023:1170) Important: Red Hat OpenShift Data Foundation 4.12.1 security bug fix update

Red Hat OpenShift Data Foundation is software-defined storage integrated with and optimized for the Red Hat OpenShift Data Foundation. Red Hat OpenShift Data Foundation is a highly scalable, productio ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: