CVE-2024-8201

Cross-Site WebSocket Hijacking vulnerability in Hitachi Ops Center Analyzer (RAID Agent component).This issue affects Hitachi Ops Center Analyzer: from 10.8.0-00 before 11.0.4-00; Hitachi Ops Center ...

Continue Reading
Remote Code Execution (RCE)

github.com/patrickhener/goshs is vulnerable to Remote Code Execution (RCE). The vulnerability is due to missing validation of the -c CLI option in the dispatchReadPump function, which allows unauthent ...

Continue Reading
Cyber criminals impersonate payroll, HR and benefits platforms to steal information and funds

The relentless battle against online fraud is a constant evolution, a digital chase where security teams and malicious actors continually adapt. The increasing sophistication of attacks is blurring th ...

Continue Reading
RCEs and more in the KUNBUS GmbH Revolution Pi PLC

TL;DR Four new vulnerabilities in the Revolution Pi industrial PLCs Two give unauthenticated attackers RCE—potentially a direct impact on safety and operations Documentation and firmware is public, ...

Continue Reading
(RHSA-2025:4553) Moderate: Red Hat Ansible Automation Platform 2.5 Product Security and Bug Fix Update

Red Hat Ansible Automation Platform provides an enterprise framework for building, deploying and managing IT automation at scale. IT Managers can provide top-down guidelines on how automation is appli ...

Continue Reading
Denial Of Service (DoS)

@trpc/server is vulnerable to Denial Of Service (DoS). The vulnerability is due to improper input validation due in unhandled error when validating malformed connectionParams in WebSocket connections, ...

Continue Reading
Malicious Go Modules Deliver Disk-Wiping Linux Malware in Advanced Supply Chain Attack

Cybersecurity researchers have discovered three malicious Go modules that include obfuscated code to fetch next-stage payloads that can irrevocably overwrite a Linux system's primary disk and ren ...

Continue Reading
Amazon Linux 2 : ecs-service-connect-agent (ALASECS-2025-052)

The version of ecs-service-connect-agent installed on the remote host is prior to v1.29.12.1-1. It is, therefore, affected by a vulnerability as referenced in the ALAS2ECS-2025-052 advisory. Envoy is ...

Continue Reading

Back to Main

Subscribe for the latest news: