The remote Rocky Linux 8 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2023:0288 advisory. An out of date library (libusrsctp) contained vulnera ...
Continue ReadingDecember 14, 2023
### Summary It seems that any Directus installation that has websockets enabled can be crashed if the websocket server receives an invalid frame. This could probably be posted as an issue and I might ...
Continue ReadingDecember 14, 2023
A flaw was found in Quarkus. This issue occurs when receiving a request over websocket with no role-based permission specified on the GraphQL operation, Quarkus processes the request without authentic ...
Continue ReadingDecember 14, 2023
The version of tomcat installed on the remote host is prior to 8.5.87-1. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2TOMCAT8.5-2023-013 advisory. - When Apache T ...
Continue ReadingDecember 14, 2023
Home assistant is an open source home automation. Whilst auditing the frontend code to identify hidden parameters, Cure53 detected `auth_callback=1`, which is leveraged by the WebSocket authentication ...
Continue ReadingDecember 14, 2023
Eclipse Jetty Canonical Repository =============================...Read More ...
Continue ReadingDecember 14, 2023
The remote Rocky Linux 9 host has packages installed that are affected by multiple vulnerabilities as referenced in the RLSA-2023:0476 advisory. An out of date library (libusrsctp) contained vulnera ...
Continue ReadingDecember 14, 2023
Lightweight stream-based WebSocket implementation.Read More ...
Continue ReadingDecember 14, 2023
Back to Main