The Azure CycleCloud product is missing security updates. It is, therefore, affected by an elevation of privilege vulnerability. An unauthenticated, adjacent attacker can exploit this, via brute force ...
Continue ReadingJanuary 26, 2023
Red Hat Openshift GitOps is a declarative way to implement continuous deployment for cloud native applications. Security Fix(es): * ArgoCD: JWT audience claim is not verified (CVE-2023-22482) For more ...
Continue ReadingJanuary 26, 2023
Red Hat Openshift GitOps is a declarative way to implement continuous deployment for cloud native applications. Security Fix(es): * ArgoCD: JWT audience claim is not verified (CVE-2023-22482) * ArgoCD ...
Continue ReadingJanuary 26, 2023
Red Hat Openshift GitOps is a declarative way to implement continuous deployment for cloud native applications. Security Fix(es): * ArgoCD: JWT audience claim is not verified (CVE-2023-22482) For more ...
Continue ReadingJanuary 26, 2023
It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2022-2023-274 advisory. - Python 3.9.x before 3.9.16 and 3.10.x before 3.10.9 on Linux allows local privilege escalati ...
Continue ReadingJanuary 26, 2023
## Summary There is a vulnerability in the Java used by IBM Robotic Process Automation as part of it's infrastructure, license management and UMS which may result in a denial of service. (CVE-2022-377 ...
Continue ReadingJanuary 26, 2023
### Impact This issue affects Rancher versions from 2.5.0 up to and including 2.5.16, from 2.6.0 up to and including 2.6.9 and 2.7.0. It was discovered that the security advisory CVE-2021-36782 (GHSA- ...
Continue ReadingJanuary 26, 2023
### Impact An issue was discovered in Rancher versions up to and including 2.6.9 and 2.7.0, where the `cattle-token` secret, used by the `cattle-cluster-agent`, is predictable. Even after the token is ...
Continue ReadingJanuary 26, 2023
Back to Main