Skip to content

トピトピニュース

Header Image
Author

GitHub

1143 Posts

Featured

Posted byGitHub
[github.com/crewjam/saml] crewjam/saml vulnerable to signature bypass via multiple Assertion elements due to improper authentication
Posted byGitHub
[org.keycloak:keycloak-core] Stored Cross-Site Scripting (XSS) in Keycloak via groups dropdown
Posted byGitHub
[bitlyshortener] Package discontinued because Bitly lowered the free quota
Posted byGitHub
[baserproject/basercms] baserproject/basercms vulnerable to cross-site scripting (XSS) vulnerability

[dompdf/dompdf] Dompdf allows remote file inclusion because URI validation failure does not halt font registration

  • Posted inHIGH
  • Posted byGitHub
  • 09/26/202209/30/2022

registerFont in FontMetrics.php in Dompdf before 2.0.1 allows remote file inclusion because a URI validation failure does not halt font registration, as demonstrated by a @font-face rule.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-41343
http…

[org.apache.pulsar:pulsar-client] Apache Pulsar Java Client vulnerable to Improper Certificate Validation

  • Posted inMODERATE
  • Posted byGitHub
  • 09/25/202210/05/2022

Delayed TLS hostname verification in the Pulsar Java Client and the Pulsar Proxy make each client vulnerable to a man in the middle attack. Connections from the Pulsar Java Client to the Pulsar Broker/Proxy and connections from the Pulsar Proxy to the …

[@hapi/hoek] hoek subject to prototype pollution via the clone function.

  • Posted inHIGH
  • Posted byGitHub
  • 09/25/202209/29/2022

hoek versions prior to 8.5.1, and 9.x prior to 9.0.3 are vulnerable to prototype pollution in the clone function. If an object with the proto key is passed to clone() the key is converted to a prototype. This issue has been patched in version 9.0.3, an…

[github.com/hashicorp/consul] HashiCorp Consul vulnerable to authorization bypass

  • Posted inMODERATE
  • Posted byGitHub
  • 09/25/202209/29/2022

HashiCorp Consul and Consul Enterprise versions prior to 1.11.9, 1.12.5, and 1.13.2 do not check for multiple SAN URI values in a CSR on the internal RPC endpoint, enabling leverage of privileged access to bypass service mesh intentions. A specially cr…

[rdiffweb] rdiffweb vulnerable to account access via session fixation

  • Posted inCRITICAL
  • Posted byGitHub
  • 09/25/202209/30/2022

rdiffweb prior to 2.4.7 fails to invalidate session cookies on logout, leading to session fixation and allowing an attacker to access a users account. After logging in and logging out, the application continues to use the preauthentication cookies. The…

[org.apache.pulsar:pulsar-broker] Apache Pulsar Broker, Proxy, and WebSocket Proxy vulnerable to Improper Certificate Validation

  • Posted inMODERATE
  • Posted byGitHub
  • 09/25/202209/30/2022

TLS hostname verification cannot be enabled in the Pulsar Broker’s Java Client, the Pulsar Broker’s Java Admin Client, the Pulsar WebSocket Proxy’s Java Client, and the Pulsar Proxy’s Admin Client leaving intra-cluster connections and geo-replication c…

[org.apache.pulsar:pulsar-broker] Apache Pulsar Brokers and Proxies vulnerable to Improper Certificate Validation

  • Posted inMODERATE
  • Posted byGitHub
  • 09/25/202209/30/2022

Apache Pulsar Brokers and Proxies create an internal Pulsar Admin Client that does not verify peer TLS certificates, even when tlsAllowInsecureConnection is disabled via configuration. The Pulsar Admin Client’s intra-cluster and geo-replication HTTPS c…

[github.com/hyperledger/fabric] Hyperledger Fabric subject to Denial of Service via non-validated request

  • Posted inHIGH
  • Posted byGitHub
  • 09/25/202209/28/2022

A vulnerability exists in Hyperledger Fabric < 2.4 could allow an attacker to construct a non-validated request that could cause a denial of service attack. The peer gateway service tries to extract channel and chaincode information from the signed…

[org.apache.pinot:pinot] Apache Pinot has Groovy Function support enabled by default

  • Posted inCRITICAL
  • Posted byGitHub
  • 09/25/202209/29/2022

Pinot allows you to run any function using Apache Groovy scripts. In versions prior to 0.10.0, Pinot query endpoint and realtime ingestion layer has a vulnerability in unprotected environments due to groovy function support being enabled by default. Th…

[https://pkg.go.dev/github.com/mattermost/mattermost-server/v6] Mattermost subject to Denial of Service via upload of special GIF

  • Posted inMODERATE
  • Posted byGitHub
  • 09/25/202209/28/2022

Mattermost version 7.1.x and earlier fails to sufficiently process a specifically crafted GIF file when it is uploaded while drafting a post, which allows authenticated users to cause resource exhaustion while processing the file, resulting in server-s…

Posts navigation

Previous Posts 1 … 43 44 45 46 47 … 115 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close