Category: CVSS3 - MEDIUM
CVE-2022-35821

Azure Sphere Information Disclosure Vulnerability.Read More ...

Continue Reading
CVE-2022-2598

Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.Read More ...

Continue Reading
Updated python-m2crypto packages fix security vulnerability

Bleichenbacher timing attacks in the RSA decryption API (CVE-2020-25657)Read More ...

Continue Reading
Security update for python-M2Crypto (important)

An update that fixes one vulnerability is now available. Description: This update for python-M2Crypto fixes the following issues: - CVE-2020-25657: Fixed Bleichenbacher timing attacks in the RS ...

Continue Reading
CVE-2022-2598

Undefined Behavior for Input to API in GitHub repository vim/vim prior to 9.0.0100.Read More ...

Continue Reading
Security Bulletin: Vulnerability in IBM Java SDK affect IMS™ Enterprise Suite: Connect API for Java, Explorer for Development, and SOAP Gateway (CVE-2015-7575).

## Summary There is vulnerability in IBM® SDK Java™ Technology Edition, 6.0.16.15 and earlier, 6.1.8.15 and earlier, 7.0.9.20 and earlier, 7.1.3.20 and earlier, 8.0.2.0 and earlier that is used by I ...

Continue Reading
Security Bulletin: Vulnerability in Spring Framework affects IBM Watson Explorer (CVE-2022-22971, CVE-2022-22968, CVE-2022-22970)

## Summary Spring Framework is used by IBM Watson Explorer Foundational and Analytical Components. IBM Watson Explorer has addressed the applicable CVE (CVE-2022-22971, CVE-2022-22968, CVE-2022-22970) ...

Continue Reading
Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in Spring Framework

## Summary IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of Spring Framework. ## Vulnerability Details ** CVEID: **[CVE-2022-22971]() ** DESCRIPTION: **Vmware Tanzu Spr ...

Continue Reading
CVE-2022-35221

Teamplus Pro community discussion has an ‘allocation of resource without limits or throttling’ vulnerability on thread subject field. A remote attacker with general user privilege posting a thread s ...

Continue Reading
GO-2022-0370

Websocket client connections are vulnerable to man-in-the-middle attacks via DNS spoofing. When looking up a WSS endpoint using a DNS TXT record, the server TLS certificate is incorrectly validated u ...

Continue Reading
Load more