Category: CVSS2 - HIGH
(RHSA-2023:3815) Important: Service Registry (container images) release and security update [2.4.3 GA]

This release of Red Hat Integration - Service Registry 2.4.3 GA includes the following security fixes. Security Fix(es): * keycloak: path traversal via double URL encoding (CVE-2022-3782) * jackson-da ...

Continue Reading
(RHSA-2023:3809) Moderate: Red Hat build of Quarkus 2.13.8 release and security update

This release of Red Hat build of Quarkus 2.13.8 includes security updates, bug fixes, and enhancements. For more information, see the release notes page listed in the References section. Security Fixe ...

Continue Reading
CVE-2023-35070

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VegaGroup Web Collection allows SQL Injection.This issue affects Web Collection: before 31197.Read ...

Continue Reading
CVE-2023-1547

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik allows SQL Injection through SOAP Parameter Tampering, Command Line Execution throu ...

Continue Reading
CVE-2023-35069

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bullwark allows Path Traversal.This issue affects Bullwark: before BLW-2016E-960H.Read More ...

Continue Reading
CVE-2023-1547

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik allows SQL Injection through SOAP Parameter Tampering, Command Line Execution throu ...

Continue Reading
Microsoft and Adobe Patch Tuesday, July 2023 Security Update Review

Microsoft has released July's edition of Patch Tuesday! This installment of security updates addressed **132** security vulnerabilities in various products, features, and roles. ## Microsoft Patch Tu ...

Continue Reading
CVE-2023-32057

Microsoft Message Queuing Remote Code Execution VulnerabilityRead More ...

Continue Reading
CVE-2023-35367

Windows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityRead More ...

Continue Reading
Security Bulletin: Multiple operator framework security vulnerabilities may affect IBM Robotic Process Automation for Cloud Pak

## Summary symlink is used by IBM Robotic Process Automation for Cloud Pak as part of the operator framework (CVE-2015-3627). Distribution is used by IBM Robotic Process Automation as part of the oper ...

Continue Reading
Load more