(RHSA-2023:1064) Critical: OpenShift Developer Tools and Services for OCP 4.12 security update

Jenkins is a continuous integration server that monitors executions of repeated jobs, such as building a software project or jobs run by cron. Security Fix(es): * jenkins-plugin/script-security: Sandb ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - MEDIUM

Directus vulnerable to Server-Side Request Forgery On File Import

### Summary Directus versions (encodeURL(importURL), { responseType: 'stream', }); } catch (err: any) { logger.warn(err, `Couldn't fetch file from url "${importURL}"`); throw new S ...

Continue Reading

CVSS3 - MEDIUM

CVSS2 - MEDIUM

Fedora 36 : edk2 (2023-e821b64a4c)

The remote Fedora 36 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2023-e821b64a4c advisory. - A timing based side channel exists in the OpenS ...

Continue Reading

CVSS3 - HIGH

SUSE SLES15 / openSUSE 15 Security Update : nodejs16 (SUSE-SU-2023:0608-1)

The remote SUSE Linux SLES15 / openSUSE 15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0608-1 advisory. - A privilege escalation vulne ...

Continue Reading

CVSS3 - HIGH

SUSE SLES12 Security Update : nodejs14 (SUSE-SU-2023:0607-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0607-1 advisory. - A privilege escalation vulnerability exist ...

Continue Reading

CVSS3 - HIGH

SUSE SLES12 Security Update : nodejs16 (SUSE-SU-2023:0609-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2023:0609-1 advisory. - A privilege escalation vulnerability exist ...

Continue Reading

CVSS3 - HIGH

Jenkins plugins Multiple Vulnerabilities (2022-10-19)

According to their self-reported version numbers, the version of Jenkins plugins running on the remote web server are affected by multiple vulnerabilities: - A sandbox bypass vulnerability involving ...

Continue Reading

CVSS3 - CRITICAL

Exploit for Allocation of Resources Without Limits or Throttling in Google Android

# CVE-2022-20494 [Download as APK](https://github.com/Supersoni...Read More ...

Continue Reading

CVSS3 - MEDIUM

Back to Main

Subscribe for the latest news: