Salesloft OAuth Breach via Drift AI Chat Agent Exposes Salesforce Customer Data

A widespread data theft campaign has allowed hackers to breach sales automation platform Salesloft to steal OAuth and refresh tokens associated with the Drift artificial intelligence (AI) chat agent. ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2024-12368

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. Improper access control in the auth_oauth module of Odoo Communi ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2022-4037

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. An issue has been discovered in GitLab CE/EE affecting all versi ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2024-2177

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. A Cross Window Forgery vulnerability exists within GitLab CE/EE ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2021-22213

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. A cross-site leak vulnerability in the OAuth flow of all version ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2024-4283

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. An issue has been discovered in GitLab EE affecting all versions ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2020-13300

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. GitLab CE/EE version 13.3 prior to 13.3.4 was vulnerable to an O ...

Continue Reading
traQ Allows Insertion of Sensitive Information into Log File

Impact A vulnerability exists where sensitive information, such as OAuth tokens, is recorded in log files when an error occurs during the execution of an SQL query. An attacker could intentionally tri ...

Continue Reading

Back to Main

Subscribe for the latest news: