Skip to content

トピトピニュース

Header Image
Category

HIGH

381 Posts

Featured

Posted byGitHub
[phpxmlrpc/phpxmlrpc] code injection in phpxmlrpc/phpxmlrpc
Posted byGitHub
[ghost] ghost vulnerable to unauthorized newsletter modification via improper access controls
Posted byGitHub
[microweber/microweber] Account Takeover Through Password Reset Poisoning
Posted byGitHub
[apache-airflow] OS Command Injection in Apache Airflow

[jenkins.xtc:extensivetesting] Cleartext Storage of Sensitive Information in Jenkins Extensive Testing Plugin

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/02/2022

Jenkins Extensive Testing Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file system.
References

https://nvd.nist.gov/vuln/de…

[org.apereo.cas:cas-server-support-simple-mfa] Use of Insufficiently Random Values in Apereo CAS

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/02/2022

Multiple classes used within Apereo CAS before release 6.1.0-RC5 makes use of apache commons-lang3 RandomStringUtils for token and ID generation which makes them predictable due to RandomStringUtils PRNG’s algorithm not being cryptographically strong.
…

[kevinpapst/kimai2] Kimai v2 is vulnerable to Cross-Site Scripting (XSS)

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202209/13/2022

Kimai v2 before 1.1 has XSS via a timesheet description.
References

https://nvd.nist.gov/vuln/detail/CVE-2019-15481
https://github.com/kevinpapst/kimai2/pull/962
https://github.com/kevinpapst/kimai2/releases/tag/1.1
https://github.com/advisories/GHSA-…

[org.apache.storm:storm-core] Exposure of Sensitive Information in Apache Storm Logviewer

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/05/2022

The Apache Storm Logviewer daemon exposes HTTP-accessible endpoints to read/search log files on hosts running Storm. In Apache Storm versions 0.9.1-incubating to 1.2.2, it is possible to read files off the host’s file system that were not intended to b…

[org.eclipse.xtext:org.eclipse.xtext] Potentially compromised builds

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/05/2022

All Xtext & Xtend versions prior to 2.18.0 were built using HTTP instead of HTTPS file transfer and thus the built artifacts may have been compromised.
References

https://nvd.nist.gov/vuln/detail/CVE-2019-10249
https://github.com/eclipse/xtext-xte…

[org.apache.qpid:proton-j] Improper Certificate Validation in Apache Qpid Proton

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/02/2022

While investigating bug PROTON-2014, we discovered that under some circumstances Apache Qpid Proton versions 0.9 to 0.27.0 (C library and its language bindings) can connect to a peer anonymously using TLS even when configured to verify the peer certifi…

[org.eclipse.vorto:org.eclipse.vorto.core] Eclipse Vorto resolved Maven build artifacts for the Xtext project over HTTP instead of HTTPS

  • Posted inHIGH
  • Posted byGitHub
  • 05/25/202211/23/2022

Eclipse Vorto versions prior to 0.11 resolved Maven build artifacts for the Xtext project over HTTP instead of HTTPS. Any of these dependent artifacts could have been maliciously compromised by a MITM attack. Hence produced build artifacts of Vorto mig…

[octoprint] Cross-site Scripting in OctoPrint

  • Posted inHIGH
  • Posted byGitHub
  • 05/19/202209/09/2022

Cross-site Scripting (XSS) – Generic in GitHub repository octoprint/octoprint prior to 1.8.0. The Stream URL of octoprint application allowing a xss payload to execute.
References

https://nvd.nist.gov/vuln/detail/CVE-2022-1432
https://github.com/octop…

[org.apache.portals.jetspeed-2:jetspeed] Path Traversal in Apache Jetspeed

  • Posted inHIGH
  • Posted byGitHub
  • 05/17/202211/04/2022

Directory traversal vulnerability in the Import/Export function in the Portal Site Manager in Apache Jetspeed before 2.3.1 allows remote authenticated administrators to write to arbitrary files, and consequently execute arbitrary code, via a .. (dot do…

[org.apache.tomcat:tomcat] Deserialization of Untrusted Data in Apache Tomcat

  • Posted inHIGH
  • Posted byGitHub
  • 05/17/202211/04/2022

The readObject method in the DiskFileItem class in Apache Tomcat and JBoss Web, as used in Red Hat JBoss Enterprise Application Platform 6.1.0 and Red Hat JBoss Portal 6.0.0, allows remote attackers to write to arbitrary files via a NULL byte in a file…

Posts navigation

Previous Posts 1 … 27 28 29 30 31 … 39 Next Posts
トピトピニュース
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close