Unauthorized access and impersonation can occur in versions 4.6.2.3226 and below of Progress Software's Hybrid Data Pipeline Server on Linux. This vulnerability allows attackers to combine creden ...
Continue ReadingJuly 31, 2025
Vulnerability in the implementation of OAuth request signing logic for Python OAuthLib is due to insufficient user data validation in uri_validate functions. Exploitation of the vulnerability could al ...
Continue ReadingJuly 31, 2025
In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login...Read More ...
Continue ReadingJuly 30, 2025
goauthentik.io is vulnerable to improper authentication. The vulnerability is due to deactivated users who registered or linked accounts via OAuth/SAML retaining partial access, which allows an attack ...
Continue ReadingJuly 30, 2025
Name of the Vulnerable Software and Affected Versions: Progress Software Hybrid Data Pipeline Server versions 4.6.2.3226 and below Description: The Hybrid Data Pipeline Server is susceptible to unauth ...
Continue ReadingJuly 30, 2025
An update is available for module.cjose, module.mod_auth_openidc, mod_auth_openidc, cjose. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...
Continue ReadingJuly 29, 2025
An update is available for module.cjose, module.mod_auth_openidc, mod_auth_openidc, cjose. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...
Continue ReadingJuly 29, 2025
Cybersecurity researchers have disclosed a now-patched critical security flaw in a popular vibe coding platform called Base44 that could allow unauthorized access to private applications built by its ...
Continue ReadingJuly 29, 2025
Back to Main