CVE-2023-4404

The Donation Forms by Charitable plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.7.0.12 due to insufficient restriction on the 'update_core_user' functio ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

[SECURITY] Fedora 38 Update: python-yfinance-0.2.28-4.fc38

Ever since Yahoo! finance decommissioned their historical data API, many programs that relied on it to stop working. yfinance aims to solve this problem by offering a reliable, threaded, and Pythonic ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

CVE-2023-37264

Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 0.35.0, pipelines do not validate child UIDs, which means that a user that has access to ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Exploit for Vulnerability in Metabase

Read More ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

Security Bulletin: Mutiple Vulnerabilties Affecting IBM Watson Machine Learning Accelerator

## Summary IBM Watson Machine Learning Accelerator 1.2.x is vulnerable to several vulnerabilities coming from dependent compoents. These are addressed. ## Vulnerability Details ** CVEID: **[CVE-2023-2 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

mTLS: When certificate authentication is done wrong

Although [X.509]() certificates have been here for a while, they have become more popular for client authentication in zero-trust networks in recent years. Mutual TLS, or authentication based on X.509 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

New BlackCat Ransomware Variant Adopts Advanced Impacket and RemCom Tools

[![BlackCat Ransomware](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Microsoft on Thursday disclosed that it found a new versi ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

mTLS: When certificate authentication is done wrong

Although [X.509]() certificates have been here for a while, they have become more popular for client authentication in zero-trust networks in recent years. Mutual TLS, or authentication based on X.509 ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Back to Main

Subscribe for the latest news: