Insertion of Sensitive Information into Log File
In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This ...
Continue Reading
February 07, 2023
Sensitive Information leak via Log File in Kubernetes
In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This ...
Continue Reading
February 07, 2023
Sensitive Information leak via Log File in Kubernetes
In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This ...
Continue Reading
February 06, 2023
[SECURITY] Fedora 36 Update: git-credential-oauth-0.1.5-1.fc36
A Git credential helper that authenticates to GitHub, GitLab, BitBucket and other forges using OAuth. The first time you push, the helper will open a browser window to authenticate. Subsequent pushes ...
Continue Reading
February 03, 2023
[SECURITY] Fedora 37 Update: git-credential-oauth-0.4.1-1.fc37
A Git credential helper that authenticates to GitHub, GitLab, BitBucket and other forges using OAuth. The first time you push, the helper will open a browser window to authenticate. Subsequent pushes ...
Continue Reading
February 03, 2023
Fedora 36 : git-credential-oauth (2023-2663dc67d8)
The remote Fedora 36 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2023-2663dc67d8 advisory.
- An attacker can cause excessive memory growth in a Go se ...
Continue Reading
February 02, 2023
Fedora 37 : git-credential-oauth (2023-267503a090)
The remote Fedora 37 host has a package installed that is affected by a vulnerability as referenced in the FEDORA-2023-267503a090 advisory.
- An attacker can cause excessive memory growth in a Go se ...
Continue Reading
February 02, 2023
CVE-2022-39061
ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for parameter length. An unauthenticated remote attacker can exploit this vulnerabi ...
Continue Reading
January 31, 2023
Fedora 37 : mediawiki (2023-30a7a812f0)
The remote Fedora 37 host has a package installed that is affected by multiple vulnerabilities as referenced in the FEDORA-2023-30a7a812f0 advisory.
- An issue was discovered in MediaWiki before 1.3 ...
Continue Reading
January 27, 2023
Secure Web Gateway 10.2.11 Cross Site Scripting Vulnerability
Secure Web Gateway version 10.2.11 suffers from a cross site scripting vulnerability. RedTeam Pentesting identified a vulnerability which allows attackers to craft URLs to any third-party website that ...
Continue Reading
January 27, 2023