Fedora 37 : gh / golang-github-cenkalti-backoff / golang-github-cli-crypto / etc (2023-cb20f08a4e)

The remote Fedora 37 host has packages installed that are affected by a vulnerability as referenced in the FEDORA-2023-cb20f08a4e advisory. - A maliciously crafted HTTP/2 stream could cause excessiv ...

Continue Reading

CVSS3 - HIGH

[SECURITY] Fedora 37 Update: golang-github-cli-oauth-1.0.1-2.fc37

A library for performing OAuth Device flow and Web application flow in Go client apps.Read More ...

Continue Reading

CVSS3 - HIGH

FreeBSD : py-suds — vulnerable to symlink attacks (b31f7029-817c-4c1f-b7d3-252de5283393)

The version of FreeBSD installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability as referenced in the b31f7029-817c-4c1f-b7d3-252de5283393 advisory. - ca ...

Continue Reading

CVSS2 - LOW

Mattermost vulnerable to information disclosure

When running in a High Availability configuration, Mattermost fails to sanitize some of the `user_updated` and` post_deleted` events broadcast to all users, leading to disclosure of sensitive informat ...

Continue Reading

CVSS3 - MEDIUM

Mattermost vulnerable to information disclosure

When running in a High Availability configuration, Mattermost fails to sanitize some of the `user_updated` and` post_deleted` events broadcast to all users, leading to disclosure of sensitive informat ...

Continue Reading

CVSS3 - MEDIUM

(RHSA-2023:1661) Important: Red Hat AMQ Broker 7.11.0 release and security update

AMQ Broker is a high-performance messaging implementation based on ActiveMQ Artemis. It uses an asynchronous journal for fast message persistence, and supports multiple languages, protocols, and platf ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Kamailio vulnerabilities

## Releases * Ubuntu 20.04 LTS * Ubuntu 18.04 ESM * Ubuntu 16.04 ESM ## Packages * kamailio - very fast, dynamic and configurable SIP server It was discovered that Kamailio did not properly sa ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2022-45175

An issue was discovered in LIVEBOX Collaboration vDesk through v018. An Insecure Direct Object Reference can occur under the 5.6.5-3/doc/{ID-FILE]/c/{N]/{C]/websocket endpoint. A malicious unauthentic ...

Continue Reading

CVSS3 - MEDIUM

Back to Main

Subscribe for the latest news: