Skip to content

トピトピニュース

Header Image
Category

HIGH

381 Posts

Featured

Posted byGitHub
[phpxmlrpc/phpxmlrpc] code injection in phpxmlrpc/phpxmlrpc
Posted byGitHub
[ghost] ghost vulnerable to unauthorized newsletter modification via improper access controls
Posted byGitHub
[microweber/microweber] Account Takeover Through Password Reset Poisoning
Posted byGitHub
[apache-airflow] OS Command Injection in Apache Airflow

[tensorflow] TensorFlow vulnerable to heap out of bounds read in filesystem glob matching

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/202210/07/2022

Impact
The general implementation for matching filesystem paths to globbing pattern is vulnerable to an access out of bounds of the array holding the directories:
if (!fs->Match(child_path, dirs[dir_index])) { … }

Since dir_index is unconditional…

[github.com/russellhaering/goxmldsig] goxmldsig vulnerable to crash on nil-pointer dereference caused by sending malformed XML signatures

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/2022

This affects all versions of package github.com/russellhaering/goxmldsig prior to 1.1.1. There is a crash on nil-pointer dereference caused by sending malformed XML signatures. This issue is patched in version 1.1.1.
References

https://nvd.nist.gov/vu…

[generator-jhipster] generator-jhipster vulnerable to login check Regular Expression Denial of Service

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/2022

Impact
For applications using JWT or session-based authentication (not OIDC), users can input a login string which can cause a denial of service, as parsing it will be too complex.
Here is an example: https://gist.github.com/atomfrede/311f8a9c6eb74c5c5…

[phpmailer/phpmailer] PHPMailer vulnerable to email header injection

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/202210/07/2022

Impact
Arbitrary additional email headers can be injected via crafted From or Sender headers.
Patches
Fixed in 2.2.1
Workarounds
Filter user-supplied values prior to using them in From or Sender properties.
References
https://nvd.nist.gov/vuln/detail/C…

[rdiffweb] rdiffweb does not have a rate limit on incorrect password attempts to prevent brute force attacks

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/202210/11/2022

rdiffweb prior to 2.5.0a4 does not have a rate limit to prevent attackers attempting brute force attacks to guess passwords. Version 2.5.0a4 limits the number of incorrect password attempts.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-3273
ht…

[rdiffweb] rdiffweb Path Traversal vulnerability

  • Posted inHIGH
  • Posted byGitHub
  • 10/07/202210/11/2022

rdiffweb prior to 2.4.10 is vulnerable to Path Traversal. Version 2.4.10 contains a patch.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-3389
https://github.com/ikus060/rdiffweb/commit/323383d1db656f1b1291be529947bd943a6b0e99
https://huntr.dev/…

[github.com/flyteorg/flyteadmin] FlyteAdmin’s Default OAuth Authorization Server secret must be rotated

  • Posted inHIGH
  • Posted byGitHub
  • 10/06/202210/11/2022

Impact
Users who enable the default Flyte’s authorization server without changing the default clientid hashes will be exposed to the public internet.
In an effort to make enabling authentication easier for Flyte administrators, the default configuratio…

[github.com/dapr/dashboard] Dapr Dashboard vulnerable to Incorrect Access Control

  • Posted inHIGH
  • Posted byGitHub
  • 10/04/202210/07/2022

Dapr Dashboard v0.1.0 through v0.10.0 is vulnerable to Incorrect Access Control that allows attackers to obtain sensitive data.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-38817
https://github.com/dapr/dashboard/issues/222
https://github.com/…

[snyk] Snyk CLI affected by Command Injection vulnerability

  • Posted inHIGH
  • Posted byGitHub
  • 10/04/202210/07/2022

Snyk CLI before 1.996.0 allows arbitrary command execution, affecting Snyk IDE plugins and the snyk npm package. Exploitation could follow from the common practice of viewing untrusted files in the Visual Studio Code editor, for example. The original d…

[com.fasterxml.jackson.core:jackson-databind] Uncontrolled Resource Consumption in FasterXML jackson-databind

  • Posted inHIGH
  • Posted byGitHub
  • 10/03/202211/19/2022

In FasterXML jackson-databind before 2.12.7.1 and in 2.13.x before 2.13.4, resource exhaustion can occur because of a lack of a check in BeanDeserializer._deserializeFromArray to prevent use of deeply nested arrays. An application is vulnerable only wi…

Posts navigation

Previous Posts 1 … 9 10 11 12 13 … 39 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close