Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 5.0 and .NET Core 3.1. This advisory also provides guidance on what developers can do to update their ...
Continue ReadingNovember 15, 2022
The kind of API security scenarios we witnessed today were never like this from the beginning of time. It has gone to extra lengths to become responsive and productive as itâs now. _How was it ...
Continue ReadingNovember 15, 2022
### Background Lighttpd is a lightweight high-performance web server. ### Description Lighttpd's mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket hands ...
Continue ReadingNovember 15, 2022
### Impact Any application using @fastify/websocket could crash if a specific, malformed packet is sent. All versions of fastify-websocket are also impacted. That module is deprecated, so it will not ...
Continue ReadingNovember 15, 2022
@fastify/websocket provides WebSocket support for Fastify. Any application using @fastify/websocket could crash if a specific, malformed packet is sent. All versions of fastify-websocket are also impa ...
Continue ReadingNovember 15, 2022
@fastify/websocket and fastify-websocket are vulnerable to denial of service. The vulnerability is due to the `fastifyWebsocket` function in `index.js` which crashes the application on an uncaught exc ...
Continue ReadingNovember 15, 2022
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations. #### Bugs * #### Notes Author| No ...
Continue ReadingNovember 15, 2022
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. The following packages have been upgraded to a later upstream version: php (7.4.30), php-pear (1.10.13). (BZ#20554 ...
Continue ReadingNovember 15, 2022
Back to Main