apache_airflow is vulnerable to improper authorization. A deactivated user is able to continue using the UI or the API with an already authenticated session due to the insufficient checks in `create_a ...
Continue ReadingOctober 11, 2022
gnutls [3.7.6-12] - fips: mark PBKDF2 with short key and output sizes non-approved - fips: only mark HMAC as approved in PBKDF2 - fips: mark gnutls_key_generate with short key sizes non-approved - fip ...
Continue ReadingOctober 11, 2022
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047, CVE-2022-41081 ...
Continue ReadingOctober 11, 2022
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047, CVE-2022-41081 ...
Continue ReadingOctober 11, 2022
Azure Arc-enabled Kubernetes cluster Connect Elevation of Privilege Vulnerability.Read More ...
Continue ReadingOctober 11, 2022
Windows Group Policy Preference Client Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37993, CVE-2022-37994.Read More ...
Continue ReadingOctober 11, 2022
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38047, CVE-2022-41081 ...
Continue ReadingOctober 11, 2022
Windows Resilient File System Elevation of Privilege.Read More ...
Continue ReadingOctober 11, 2022
Back to Main