Important: Red Hat Security Advisory: Red Hat build of OpenTelemetry 3.6.0 release

Red Hat build of OpenTelemetry 3.6.0 has been released Breaking changes: * Nothing Deprecations: * Nothing Technology Preview features: Cumulative-to-Delta Processor Enhancements: The following Tech ...

Continue Reading
DataEase v2.10.2 – JWT Signature Verification Bypass

DataEase is an open source data visualization analysis tool that helps users quickly analyze data and gain insights into business trends. In affected versions, the lack of signature verification of JW ...

Continue Reading
Security Bulletin: IBM Watson Speech Services Cartridge is vulnerable to asymmetric resource consumption in golang-jwt [CVE-2025-30204]

Summary IBM Watson Speech Services Cartridge is vulnerable to asymmetric resource consumption in golang-jwt, due to a flaw in the , the function parse.ParseUnverified splits [CVE-2025-30204]. Golang-j ...

Continue Reading
CVE-2025-43866 Vantage6 Server JWT secret not cryptographically secure

vantage6 is an open-source infrastructure for privacy preserving analysis. The JWT secret key in the vantage6 server is auto-generated unless defined by the user. The auto-generated key is a UUID1, wh ...

Continue Reading
Important: Red Hat Security Advisory: OpenShift Container Platform 4.16.42 bug fix and security update

Red Hat OpenShift Container Platform release 4.16.42 is now available with updates to packages and images that fix several bugs and add enhancements. This release includes a security update for Red Ha ...

Continue Reading
CVE-2024-47081 vulnerabilities

Vulnerabilities for packages: az, semgrep, tensorflow-cpu-jupyter, kubeflow-katib, k8s-sidecar, kubeflow-pipelines-visualization-server, jupyter-base-notebook, jwt-tool, airflow, py3-requests, kubeflo ...

Continue Reading
GHSA-9HJG-9R4M-MVJ7 vulnerabilities

Vulnerabilities for packages: az, semgrep, tensorflow-cpu-jupyter, kubeflow-katib, k8s-sidecar, kubeflow-pipelines-visualization-server, jupyter-base-notebook, jwt-tool, airflow, py3-requests, kubeflo ...

Continue Reading
GHSA-5RJG-FVGR-3XXF vulnerabilities

Vulnerabilities for packages: checkov, jwt-tool, emissary,...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: