Improper Authorization

apache_airflow is vulnerable to improper authorization. A deactivated user is able to continue using the UI or the API with an already authenticated session due to the insufficient checks in `create_a ...

Continue Reading

CVSS3 - HIGH

gnutls and nettle security, bug fix, and enhancement update

gnutls [3.7.6-12] - fips: mark PBKDF2 with short key and output sizes non-approved - fips: only mark HMAC as approved in PBKDF2 - fips: mark gnutls_key_generate with short key sizes non-approved - fip ...

Continue Reading

CVSS3 - HIGH

CVE-2022-24504

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047, CVE-2022-41081 ...

Continue Reading

CVSS3 - HIGH

CVE-2022-22035

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047, CVE-2022-41081 ...

Continue Reading

CVSS3 - HIGH

CVE-2022-37968

Azure Arc-enabled Kubernetes cluster Connect Elevation of Privilege Vulnerability.Read More ...

Continue Reading

CVSS3 - CRITICAL

CVE-2022-37999

Windows Group Policy Preference Client Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37993, CVE-2022-37994.Read More ...

Continue Reading

CVSS3 - HIGH

CVE-2022-38000

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38047, CVE-2022-41081 ...

Continue Reading

CVSS3 - HIGH

CVE-2022-38003

Windows Resilient File System Elevation of Privilege.Read More ...

Continue Reading

CVSS3 - HIGH

Back to Main

Subscribe for the latest news: