OpenAM<=15.0.3 FreeMarker – Template Injection

OpenAM is an open access management solution. In versions 15.0.3 and prior, the `getCustomLoginUrlTemplate` method in RealmOAuth2ProviderSettings.java is vulnerable to template injection due to its us ...

Continue Reading
IBM Security Verify Access 10.0.8 Open Redirection

...Read More ...

Continue Reading
Beyond Passwords: Advanced API Authentication Strategies for Enhanced Security

Passwordless authentication for end users is taking the world by storm, offering organizations and individuals alike unprecedented security, user experience, and efficiency benefits. By all indication ...

Continue Reading
GitLab 12.5 < 17.2.9 / 17.3 < 17.3.5 / 17.4 < 17.4.2 (CVE-2024-9164)

The version of GitLab installed on the remote host is affected by a vulnerability, as follows: Gitlab reports: Run pipelines on arbitrary branches An attacker can impersonate arbitrary user SSRF in ...

Continue Reading
GitLab 11.6 < 17.2.9 / 17.3 < 17.3.5 / 17.4 < 17.4.2 (CVE-2024-8970)

The version of GitLab installed on the remote host is affected by a vulnerability, as follows: Gitlab reports: Run pipelines on arbitrary branches An attacker can impersonate arbitrary user SSRF in ...

Continue Reading
GitLab 11.4 < 17.2.9 / 17.3 < 17.3.5 / 17.4 < 17.4.2 (CVE-2024-5005)

The version of GitLab installed on the remote host is affected by a vulnerability, as follows: Gitlab reports: Run pipelines on arbitrary branches An attacker can impersonate arbitrary user SSRF in ...

Continue Reading
New Critical GitLab Vulnerability Could Allow Arbitrary CI/CD Pipeline Execution

GitLab has released security updates for Community Edition (CE) and Enterprise Edition (EE) to address eight security flaws, including a critical bug that could allow running Continuous Integration an ...

Continue Reading
FreeBSD : Gitlab — vulnerabilities (cc1ac01e-86b0-11ef-9369-2cf05da270f3)

The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by multiple vulnerabilities as referenced in the cc1ac01e-86b0-11ef-9369-2cf05da270f3 advisor ...

Continue Reading

Back to Main

Subscribe for the latest news: