Category: CVSS3 - HIGH
ruby:2.5 security update

ruby [2.5.9-110.0.1] - Fix for CVE-2022-28739 [Orabug: 34824177]Read More ...

Continue Reading
Security Bulletin: Liberty is vulnerable to denial of service due to GraphQL Java affecting IBM TXSeries for Multiplatforms

## Summary Liberty is vulnerable to a denial of service due to GraphQL Java (mpGraphQL-1.0 or mpGraphQL-2.0) caused by an uncontrolled resource consumption flaw. This affects WebSphere Application Ser ...

Continue Reading
Debian DLA-3275-1 : firefox-esr – LTS security update

The remote Debian 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-3275 advisory. - An out of date library (libusrsctp) contained vulnerabilities ...

Continue Reading
(RHSA-2023:0069) Low: OpenShift Container Platform 4.11.24 bug and security update

Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container im ...

Continue Reading
Debian DSA-5322-1 : firefox-esr – security update

The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-5322 advisory. - An out of date library (libusrsctp) contained vulnerabilities ...

Continue Reading
Slackware Linux 15.0 / current mozilla-firefox Multiple Vulnerabilities (SSA:2023-018-04)

The version of mozilla-firefox installed on the remote host is prior to 102.7.0esr / 109.0. It is, therefore, affected by multiple vulnerabilities as referenced in the SSA:2023-018-04 advisory. - An ...

Continue Reading
Directory Traversal

Gravitee API Management is vulnerable to path traversal. The vulnerability exists in the Email service due to an html injection which allows an attacker to read arbitrary files via a /management/users ...

Continue Reading
Denial Of Service (DoS)

mercurius is vulnerable to Denial of Service (DoS) attacks. A malicious user is able to cause an application crash via sending a malformed packet over `WebSocket` to `/graphql` resulting in Denial of ...

Continue Reading
Denial Of Service (DoS)

mercurius is vulnerable to Denial of Service (DoS) attacks. A malicious user is able to cause an application crash via sending a malformed packet over `WebSocket` to `/graphql` resulting in Denial of ...

Continue Reading
CVE-2023-21886

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Difficult to exploit vulner ...

Continue Reading
Load more