Security Bulletin: Multiple VMWare Tanzu Spring Vulerabilities Affects IBM OpenPages with Watson (CVE-2022-22968, CVE-2022-22970, CVE-2022-22971)
## Summary
Spring Framework open source library is used by IBM OpenPages with Watson. Multiple vulnerabilties are being disclosed from Spring Framework within this bulletin. These vulnerabilities are ...
Continue Reading
July 28, 2023
CVE-2023-0958
Several plugins for WordPress by Inisev are vulnerable to unauthorized installation of plugins due to a missing capability check on the handle_installation function that is called via the inisev_insta ...
Continue Reading
July 28, 2023
CVE-2023-3977
Several plugins for WordPress by Inisev are vulnerable to Cross-Site Request Forgery to unauthorized installation of plugins due to a missing nonce check on the handle_installation function that is ca ...
Continue Reading
July 28, 2023
CVE-2023-3957
The ACF Photo Gallery Field plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient restriction on the 'apg_profile_update' function in versions up to, and inclu ...
Continue Reading
July 27, 2023
Incorrect Permission Assignment
gitlab is vulnerable to Incorrect Permission Assignment. The vulnerability exists due to improper access control in the library, which allows an attacker to edit the approval rules via the API by an u ...
Continue Reading
July 27, 2023
Denial Of Service (DoS)
gitlab is vulnerable to Denial Of Service (DoS). The vulnerability exists due to the lack of length validation of the library, which allows an attacker to create large issue descriptions via GraphQL, ...
Continue Reading
July 27, 2023
(RHSA-2023:4283) Moderate: Red Hat OpenStack Platform 16.2 (openstack-neutron) security update
OpenStack Networking (neutron) is a virtual network service for OpenStack. Just as OpenStack Compute (nova) provides an API to dynamically request and
configure virtual servers, OpenStack Networking p ...
Continue Reading
July 26, 2023
OpenStack vulnerability
## Releases
* Ubuntu 23.04
* Ubuntu 22.04 LTS
## Packages
* cinder - OpenStack storage service
* ironic - Openstack bare metal provisioning service
* nova - OpenStack Compute cloud infrastru ...
Continue Reading
July 24, 2023
[SECURITY] Fedora 37 Update: grpc-1.48.4-8.fc37
gRPC is a modern open source high performance RPC framework that can run in any environment. It can efficiently connect services in and across data centers with pluggable support for load balancing, ...
Continue Reading
July 24, 2023