Rocky Linux 9 : thunderbird (RLSA-2023:0476)

The remote Rocky Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2023:0476 advisory. An out of date library (libusrsctp) contained vulnera ...

Continue Reading
Cross Site Scripting (XSS)

home-assistant/core and home-assistant-js-websocket are vulnerable to XSS attack.The vulnerability occurs due to a loophole in Websocket authentication logic. The logic utilises a `state` parameter wh ...

Continue Reading
[SECURITY] Fedora 39 Update: rust-tungstenite-0.20.1-1.fc39

Lightweight stream-based WebSocket implementation.Read More ...

Continue Reading
(RHSA-2023:6818) Important: Satellite 6.14 security and bug fix update

Red Hat Satellite is a systems management tool for Linux-based infrastructure. It allows for provisioning, remote management, and monitoring of multiple Linux deployments with a single centralized too ...

Continue Reading
Denial Of Service (DoS)

directus is vulnerable to Denial Of Service (DoS). The vulnerability exists because invalid websocket frames are not properly handled which allows an attacker to crash the application .Read More ...

Continue Reading
CVE-2023-45820

Directus is a real-time API and App dashboard for managing SQL database content. In affected versions any Directus installation that has websockets enabled can be crashed if the websocket server recei ...

Continue Reading
Cybercriminals Using New ASMCrypt Malware Loader to Fly Under the Radar

[![ASMCrypt Malware Loader](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Threat actors are selling a new crypter and loader ca ...

Continue Reading
Exploit for Improper Handling of Exceptional Conditions in Eclipse Jetty

Eclipse Jetty Canonical Repository =============================...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: