(RHSA-2023:2083) Moderate: Red Hat Advanced Cluster Management 2.6.5 security updates and bug fixes

Red Hat Advanced Cluster Management for Kubernetes 2.6.5 images Red Hat Advanced Cluster Management for Kubernetes provides the capabilities to address common challenges that administrators and site r ...

Continue Reading

CVSS3 - HIGH

Debian DLA-3409-1 : libapache2-mod-auth-openidc – LTS security update

The remote Debian 10 host has a package installed that is affected by multiple vulnerabilities as referenced in the dla-3409 advisory. - A flaw was found in mod_auth_openidc before version 2.4.1. An ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Wordfence Intelligence Weekly WordPress Vulnerability Report (Apr 17, 2023 to Apr 23, 2023)

Last week, there were 152 vulnerabilities disclosed in 134 WordPress Plugins and 0 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 41 Vulnera ...

Continue Reading

CVSS3 - HIGH

Security Bulletin: Security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for April 2023

## Summary In addition to many updates of operating system level packages, the following security vulnerability is addressed with IBM Cloud Pak for Business Automation 21.0.3-IF020 and 22.0.2-IF004. # ...

Continue Reading

CVSS3 - CRITICAL

APT28 Targets Ukrainian Government Entities with Fake “Windows Update” Emails

[![Windows Update](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() The Computer Emergency Response Team of Ukraine (CERT-UA) has ...

Continue Reading

CVSS3 - CRITICAL

Denial Of Services (DoS)

graphql-java is vulnerable to Denial Of Services (DoS). An attacker can send a maliciously crafted GraphQL query that causes excessive stack consumption, which can lead to an application crash.Read Mo ...

Continue Reading

CVSS3 - HIGH

Security Bulletin: There is a vulnerability in GraphQL used by IBM Maximo Manage application in IBM Maximo Application Suite (CVE-2022-37734)

## Summary There is a vulnerability in GraphQL used by IBM Maximo Manage application in IBM Maximo Application Suite. ## Vulnerability Details **CVEID: **[CVE-2022-37734]() **DESCRIPTION: **GraphQL Ja ...

Continue Reading

CVSS3 - HIGH

CVE-2023-27487

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3, 1.24.4, 1.23.6, and 1.22.9, the client may bypass JSON Web Token (JWT) checks a ...

Continue Reading

CVSS3 - CRITICAL

Back to Main

Subscribe for the latest news: