Security Bulletin: Google OAuth Client Library for Java as used by IBM QRadar SIEM is vulnerable to verification bypass (CVE-2021-22573)

## Summary Google OAuth Client Library for Java as used by IBM QRadar SIEM is vulnerable to verification bypass. IBM QRadar SIEM has addressed the applicable vulnerability. ## Vulnerability Details ** ...

Continue Reading

CVSS3 - HIGH

CVSS2 - LOW

MOVEit SQL Injection

Post ContentRead More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: IBM Spectrum Control is vulnerable to weakness related to Apache Kafka

## Summary Vulnerability in Apache Kafka allow a remote authenticated attacker to execute arbitrary code may affect IBM Spectrum Control. ## Vulnerability Details ** CVEID: **[CVE-2023-25194]() ** DES ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Security Bulletin: IBM Spectrum Control is vulnerable to weakness related to Node.js

## Summary Vulnerability in Node.js allow a denial of service, caused by a regular expression may affect IBM Spectrum Control. ## Vulnerability Details ** CVEID: **[CVE-2023-24807]() ** DESCRIPTION: * ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

(RHSA-2023:3665) Important: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: 0-byte UDP payload Denial of Service (CVE-2023-32067) For more ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

GCP ESPv2 Hit with Critical API Authorization Bypass CVE-2023-30845

This post delves into a very impactful JWT Authentication Bypass vulnerability ([CVE-2023-30845]()) found in [ESP-v2](), an open-source service proxy that provides API management capabilities using Go ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Alert! Hackers Exploiting Critical Vulnerability in VMware’s Aria Operations Networks

[![Vulnerability in VMware](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() VMware has flagged that a recently patched critical c ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

(RHSA-2023:3741) Important: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: 0-byte UDP payload Denial of Service (CVE-2023-32067) For more ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: