ruby:2.5 security update
ruby [2.5.9-110.0.1] - Fix for CVE-2022-28739 [Orabug: 34824177]Read More ...
Continue ReadingJanuary 21, 2023
ruby:2.5 security update
ruby [2.5.9-110.0.1] - Fix for CVE-2022-28739 [Orabug: 34824177]Read More ...
Continue ReadingJanuary 21, 2023
Security Bulletin: Liberty is vulnerable to denial of service due to GraphQL Java affecting IBM TXSeries for Multiplatforms
## Summary Liberty is vulnerable to a denial of service due to GraphQL Java (mpGraphQL-1.0 or mpGraphQL-2.0) caused by an uncontrolled resource consumption flaw. This affects WebSphere Application Ser ...
Continue ReadingJanuary 20, 2023
Debian DLA-3275-1 : firefox-esr – LTS security update
The remote Debian 10 host has packages installed that are affected by multiple vulnerabilities as referenced in the dla-3275 advisory. - An out of date library (libusrsctp) contained vulnerabilities ...
Continue ReadingJanuary 20, 2023
(RHSA-2023:0069) Low: OpenShift Container Platform 4.11.24 bug and security update
Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container im ...
Continue ReadingJanuary 19, 2023
Debian DSA-5322-1 : firefox-esr – security update
The remote Debian 11 host has packages installed that are affected by multiple vulnerabilities as referenced in the dsa-5322 advisory. - An out of date library (libusrsctp) contained vulnerabilities ...
Continue ReadingJanuary 19, 2023
Slackware Linux 15.0 / current mozilla-firefox Multiple Vulnerabilities (SSA:2023-018-04)
The version of mozilla-firefox installed on the remote host is prior to 102.7.0esr / 109.0. It is, therefore, affected by multiple vulnerabilities as referenced in the SSA:2023-018-04 advisory. - An ...
Continue ReadingJanuary 19, 2023
Directory Traversal
Gravitee API Management is vulnerable to path traversal. The vulnerability exists in the Email service due to an html injection which allows an attacker to read arbitrary files via a /management/users ...
Continue ReadingJanuary 19, 2023
Denial Of Service (DoS)
mercurius is vulnerable to Denial of Service (DoS) attacks. A malicious user is able to cause an application crash via sending a malformed packet over `WebSocket` to `/graphql` resulting in Denial of ...
Continue ReadingJanuary 19, 2023
Denial Of Service (DoS)
mercurius is vulnerable to Denial of Service (DoS) attacks. A malicious user is able to cause an application crash via sending a malformed packet over `WebSocket` to `/graphql` resulting in Denial of ...
Continue ReadingJanuary 19, 2023
CVE-2023-21886
Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.42 and prior to 7.0.6. Difficult to exploit vulner ...
Continue ReadingJanuary 18, 2023