[NEW] [medium] MISP: Vulnerability allows bypassing of security measures
A remote, authenticated attacker can exploit a vulnerability in MISP to bypass security measures.
● Live advisory feed
Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.
A remote, authenticated attacker can exploit a vulnerability in MISP to bypass security measures.
A remote, anonymous attacker can exploit multiple vulnerabilities in Microsoft Edge to execute arbitrary code and gain the permissions of an attacked user.
An attacker can exploit multiple vulnerabilities in JetBrains TeamCity to execute arbitrary code, manipulate data, or perform cross-site scripting attacks.
A local attacker can exploit a vulnerability in Linux Kernel to potentially trigger a denial-of-service condition or manipulate data.
A remote, anonymous attacker can exploit a vulnerability in JetBrains IntelliJ IDEA to execute arbitrary code.
A remote, authenticated attacker can exploit a vulnerability in Coolify to bypass security measures.
A remote, anonymous attacker can exploit a vulnerability in MailPit to bypass security measures.
A remote, anonymous attacker can exploit a vulnerability in CUPS to disclose information.
A remote, authenticated attacker can exploit a vulnerability in Kyverno to escalate their privileges.
An attacker can exploit multiple vulnerabilities in avahi daemon to conduct a Denial of Service attack.
n8n has fixed multiple vulnerabilities in the n8n workflow automation platform. The vulnerabilities include: - An authorization issue where authenticated users can assign workflows to folders within projects they do not have access to, due to insufficient validation of request pa…
Palo Alto Networks has fixed multiple vulnerabilities in PAN-OS software, specifically in PA-Series and VM-Series firewalls, as well as Panorama management platforms. The vulnerabilities affect various components of PAN-OS. - There are multiple cross-site scripting (XSS) vulnerab…
Progress has fixed vulnerabilities in MOVEit Transfer, specifically in the Custom Reports modules and the Ad Hoc module. The vulnerabilities affect multiple versions of MOVEit Transfer, including 25.0.0 to 25.0.7, 25.1.0 to 25.1.3, and 26.0.0 up to just before 26.0.1. One vulnera…
A remote, anonymous attacker can exploit multiple vulnerabilities in OWASP ModSecurity to bypass security measures.
An attacker can exploit a vulnerability in Snipe-IT to disclose information.
An attacker can exploit multiple vulnerabilities in Drupal to bypass security measures, conduct a Cross-Site Scripting attack, disclose information, conduct an SQL injection attack, and manipulate data.
An attacker can exploit multiple vulnerabilities in Snipe-IT to manipulate files, bypass security precautions, conduct a cross-site scripting attack, and execute arbitrary code.
An attacker can exploit multiple vulnerabilities in Drupal Core to execute arbitrary code, conduct cross-site scripting attacks, manipulate data, or redirect users to malicious websites.
An attacker can exploit multiple vulnerabilities in Drupal to manipulate data.
A remote, authenticated attacker can exploit a vulnerability in Snipe-IT to bypass security precautions and manipulate data.
An attacker can exploit multiple vulnerabilities in Erlang/OTP to bypass security precautions, manipulate data, disclose confidential information, or cause a denial-of-service condition.
A remote, authenticated attacker can exploit multiple vulnerabilities in Drupal to conduct a cross-site scripting attack, bypass security measures, and cause further unspecified impacts.
A remote, anonymous attacker can exploit a vulnerability in the Drupal module "AlternativeCommerce" (Basket) to execute arbitrary code.
An attacker can exploit multiple vulnerabilities in Flowise to execute arbitrary code, bypass security measures, disclose information, and manipulate files.
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Oracle Java SE to compromise confidentiality, integrity, and availability.
An attacker can exploit multiple vulnerabilities in n8n to gain elevated privileges, including administrator rights, execute arbitrary code, manipulate data, bypass security measures, disclose confidential information, or conduct cross-site and man-in-the-middle attacks.
A local attacker can exploit a vulnerability in tigervnc to disclose information, manipulate files, and conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in SaltStack Salt to execute arbitrary code or bypass security measures.
A remote, anonymous attacker can exploit multiple vulnerabilities in FreeRDP to cause a denial-of-service condition or possibly execute arbitrary code.
A remote, anonymous attacker can exploit multiple vulnerabilities in Xwayland and X.Org X11 to conduct an unspecified attack.
A local attacker can exploit multiple vulnerabilities in the Linux Kernel to conduct a denial of service attack or achieve unspecified effects.
A remote, authenticated attacker can exploit a vulnerability in Red Hat Enterprise Linux to conduct a denial of service attack.
A remote, authenticated attacker can exploit multiple vulnerabilities in Drupal to conduct a cross-site scripting attack, bypass security measures, and manipulate data.
A remote, anonymous attacker can exploit a vulnerability in Django to conduct a denial of service attack.
A remote, anonymous attacker can exploit multiple vulnerabilities in Red Hat Enterprise Linux to conduct a denial of service attack, bypass security measures, manipulate data, or disclose confidential information.
A remote, anonymous attacker can exploit a vulnerability in Django, Debian Linux, and Ubuntu Linux to conduct a denial of service attack.
A remote, anonymous attacker can exploit a vulnerability in Red Hat Enterprise Linux in the Django component to manipulate files.
A local attacker can exploit multiple vulnerabilities in X.Org X11 and Xwayland to cause a Denial-of-Service state and potentially execute code or achieve unspecified effects.
A remote, authenticated attacker can exploit multiple vulnerabilities in SaltStack Salt to bypass security measures, manipulate files, execute arbitrary code, trigger a denial of service, or achieve further unspecified impacts.
A remote, anonymous attacker can exploit multiple vulnerabilities in Python to manipulate files or bypass security measures.
Siemens has fixed vulnerabilities in SICORE Base systems, specifically in versions below V26.20. The vulnerabilities are present in multiple components of the CPCI85 and SICORE Base systems. One vulnerability allows an authenticated attacker to crash the web service via an HTTP-a…
Juniper has fixed multiple vulnerabilities in Junos OS and Junos OS Evolved, specifically for MX Series, PTX Series, QFX Series, EX Series, SRX Series, and QFX10000 Series devices. The vulnerabilities affect various components within Junos OS and Junos OS Evolved, including the p…
LINE client for iOS provided by LY Corporation contains a vulnerability in the in-app browser due to insufficient safeguards when handling arbitrary URL schemes, which may lead to denial-of-service (DoS) condition.
Cisco IOS 12.4 contains multiple cross-site forgery vulnerabilities that allows remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /level/15/exec/- URI, and (2) a certain "alias exec" command to the /level/15/exec/-/configure/http URI…
Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. https://security-tracker.debian.org/tracker/DSA-6387-1
Description A vulnerability was discovered in TSDProxy where it forwards its internal per-process authentication token to all proxied backend services. When identityHeaders is enabled (the default), tsdproxy injects x-tsdproxy-auth-token into every upstream HTTP request alongsid…
Previously, Apko verified the control section hash (.PKGINFO etc.) against the signed APKINDEX, but never verified the data section hash (the actual package files that get installed). An attacker who could compromise a mirror, poison a cache, or MITM a package fetch could substit…
Impact The redirect follower middleware previously failed to strip a number of headers that are known to be sensitive and did not provide a way to provide a custom list of headers to strip. _What kind of vulnerability is it? Who is impacted?_ This could cause inadvertent leakage…
Summary A Clauster instance bound to a non-loopback address (e.g. 0.0.0.0 or a LAN IP) can serve the entire dashboard and its API without any authentication — even when the operator has configured a password — if auth.enabled is left at its default (false). The operator believes …
Summary secure_headers builds the Content-Security-Policy value by stitching every configured directive together with ; separators. Three directive builders (build_sandbox_list_directive, build_media_type_list_directive, build_report_to_directive) interpolate caller-supplied str…