CVE-2023-35302
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution VulnerabilityRead More ...
Continue ReadingJuly 11, 2023
CVE-2023-35302
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution VulnerabilityRead More ...
Continue ReadingJuly 11, 2023
CVE-2023-35323
Windows OLE Remote Code Execution VulnerabilityRead More ...
Continue ReadingJuly 11, 2023
Important Photon OS Security Update – PHSA-2023-5.0-0046
Updates of ['linux-secure', 'linux-rt', 'falco', 'linux'] packages of Photon OS have been released.Read More ...
Continue ReadingJuly 11, 2023
CVE-2023-2079
The "Buy Me a Coffee â Button and Widget Plugin" plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the recieve_post, bmc_disconnect, name_post, a ...
Continue ReadingJuly 11, 2023
CVE-2023-2078
The "Buy Me a Coffee â Button and Widget Plugin" plugin for WordPress is vulnerable to unauthorized modification of data due to missing capability checks on the recieve_post, bmc_disconnect, name ...
Continue ReadingJuly 11, 2023
Security Bulletin: The IBM® Engineering Lifecycle Engineering product using IBM WebSphere Application Server Liberty is vulnerable to GraphQL – CVE-2023-28867
## Summary Vulnerability in the GraphQL Java library used by IBM WebSphere Application Server Liberty when the feature mpGraphQL-1.0 or mpGraphQL-2.0 is enabled. Following IBM® Engineering Lifecycl ...
Continue ReadingJuly 10, 2023
php-cas – security update
A vulnerability has been found in phpCAS, a Central Authentication Service client library in php, which may allow an attacker to gain access to a victim's account on a vulnerable CASified service with ...
Continue ReadingJuly 08, 2023
ocsinventory-server – security update
The source package ocsinventory-server has been updated to address the API change in php-cas due to [CVE-2022-39369](https://security-tracker.debian.org/tracker/CVE-2022-39369), see DLA 3485-1 for det ...
Continue ReadingJuly 08, 2023
ruby:2.7 security, bug fix, and enhancement update
ruby [2.7.8-139] - Upgrade to Ruby 2.7.8. Resolves: rhbz#2149262 - Fix HTTP response splitting in CGI. Resolves: CVE-2021-33621 - Fix ReDoS vulnerability in URI. Resolves: CVE-2023-28755 - Fix R ...
Continue ReadingJuly 08, 2023
Connection Confusion
grpc is vulnerable to Connection Confusion. The vulnerability exists when the gRPC HTTP2 stack raised a header size exceeded error, and it skipped parsing the rest of the HPACK frame, which caused any ...
Continue ReadingJuly 08, 2023