SugarCRM 12.2.0 PHP Object Injection Vulnerability
Post ContentRead More ...
Continue ReadingAugust 24, 2023
SugarCRM 12.2.0 PHP Object Injection Vulnerability
Post ContentRead More ...
Continue ReadingAugust 24, 2023
Insufficient URL Validation
org.apache.nifi:nifi-dbcp-base is vulnerable to Insufficient URL Validation. The vulnerability allows an authenticated attacker with relevant privileges to bypass connection URL validation using custo ...
Continue ReadingAugust 23, 2023
[SECURITY] Fedora 38 Update: python-yfinance-0.2.28-4.fc38
Ever since Yahoo! finance decommissioned their historical data API, many programs that relied on it to stop working. yfinance aims to solve this problem by offering a reliable, threaded, and Pythonic ...
Continue ReadingAugust 23, 2023
CVE-2023-37264
Tekton Pipelines project provides k8s-style resources for declaring CI/CD-style pipelines. Starting in version 0.35.0, pipelines do not validate child UIDs, which means that a user that has access to ...
Continue ReadingAugust 21, 2023