Böngésszen szolgáltatóknak szóló tartalmaink között.
2024. szep. 1.
Riasztás
NA - CVE-2024-45508 - HTMLDOC before 1.9.19 has an out-of-bounds...
HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading whitespace from a whitespace-only node.
In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in the case where the user is not an org admin.
NA - CVE-2024-8370 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in Grocy up to 4.2.0. This vulnerability affects unknown code of the file /api/files/recipepictures/ of the component SVG File Upload Handler....
Check Point, Cisco Boost AI Investments With Latest Deals
Cisco's deal to acquire Robust Intelligence will make it possible to use red-team algorithms to assess risk in AI models and applications, while Check Point's acquisition of Cyberint will add threat intelligence to its SOC platform.
NA - CVE-2023-7256 - In affected libpcap versions during the setup...
In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly freeaddrinfo(), but does not clearly indicate to...
NA - CVE-2024-45304 - Cairo-Contracts are OpenZeppelin Contracts...
Cairo-Contracts are OpenZeppelin Contracts written in Cairo for Starknet, a decentralized ZK Rollup. This vulnerability can lead to unauthorized ownership transfer, contrary to the original...
NA - CVE-2024-8006 - Remote packet capture support is disabled by...
Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture support enabled, one of the functions that become available is...
High - CVE-2024-7435 - The Attire theme for WordPress is vulnerable to...
The Attire theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.0.6 via deserialization of untrusted input. This makes it possible for authenticated...