Mozilla Firefox ESR < 102.7

The version of Firefox ESR installed on the remote Windows host is prior to 102.7. It is, therefore, affected by multiple vulnerabilities as referenced in the mfsa2023-02 advisory. - An out of date ...

Continue Reading

CVSS3 - HIGH

Mozilla Firefox < 109.0

The version of Firefox installed on the remote Windows host is prior to 109.0. It is, therefore, affected by multiple vulnerabilities as referenced in the mfsa2023-01 advisory. - A compromised web c ...

Continue Reading
Web skimmer found on website of Liquor Control Board of Ontario

On January 12, 2023, the Liquor Control Board of Ontario (LCBO) published a [news release]() about a cybersecurity incident, affecting online sales through LCBO.com. It is one of the largest retailers ...

Continue Reading
Security Vulnerabilities fixed in Firefox ESR 102.7 — Mozilla

An out of date library (libusrsctp) contained vulnerabilities that could potentially be exploited. Due to the Firefox GTK wrapper code's use of text/plain for drag data and GTK treating all text/plain ...

Continue Reading

CVSS3 - HIGH

Security Vulnerabilities fixed in Firefox 109 — Mozilla

A compromised web child process could disable web security opening restrictions, leading to a new child process being spawned within the file:// context. Given a reliable exploit primitive, this new p ...

Continue Reading
Security Bulletin: Apache Tomcat Vulnerability Affects Watson Speech Services

## Summary An Apache Tomcat Vulnerability affecting Watson Speech Services has been fixed in the latest version of IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.3 ## Vulnerabilit ...

Continue Reading
(RHSA-2023:0074) Important: RHV 4.4 SP1 [ovirt-4.5.3-3] security update

The ovirt-engine package provides the Red Hat Virtualization Manager, a centralized management platform that allows system administrators to view and manage virtual machines. The Manager provides a co ...

Continue Reading
mercurius has Uncaught Exception when using subscriptions

### Impact Any users of Mercurius until version v11.5.0 are subjected to a denial of service attack by sending a malformed packet over WebSocket to `/graphql`. ### Patches This was patched in https:// ...

Continue Reading

Back to Main

Subscribe for the latest news: