CVE Alert: CVE-2024-53991
Vulnerability Summary: CVE-2024-53991 Discourse is an open source platform for community discussion. This vulnerability only impacts Discourse instances configured to...
Vulnerability Summary: CVE-2024-53991 Discourse is an open source platform for community discussion. This vulnerability only impacts Discourse instances configured to...
Vulnerability Summary: CVE-2024-52589 Discourse is an open source platform for community discussion. Moderators can see the Screened emails list in...
Vulnerability Summary: CVE-2024-52794 Discourse is an open source platform for community discussion. Users clicking on the lightbox thumbnails could be...
Vulnerability Summary: CVE-2024-49765 Discourse is an open source platform for community discussion. Sites that are using discourse connect but still...
Vulnerability Summary: CVE-2024-7139 Due to an unchecked buffer length, a specially crafted L2CAP packet can cause a buffer overflow. This...
Vulnerability Summary: CVE-2024-12729 A post-auth code injection vulnerability in the User Portal allows authenticated users to execute code remotely in...
Vulnerability Summary: CVE-2024-12700 There is an unrestricted file upload vulnerability where it is possible for an authenticated user (low privileged)...
Vulnerability Summary: CVE-2024-12727 A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall versions older than 21.0...
Vulnerability Summary: CVE-2024-54009 Remote authentication bypass vulnerability in HPE Alletra Storage MP B10000 in versions prior to version 10.4.5 could...
Vulnerability Summary: CVE-2024-12728 A weak credentials vulnerability potentially allows privileged system access via SSH to Sophos Firewall older than version...
In today's digital world, privacy and security are paramount. Virtual Private Networks (VPNs) have emerged as a vital tool for...
Interpol is urging industry experts to reconsider the term 'pig butchering,' emphasizing the need for a more empathetic language that...
The EPSS, a key framework for vulnerability assessment, faces new risks as demonstrated by Morphisec's proof-of-concept showing susceptibility to AI-driven...
The EU has clarified its stance on using personal data for AI training, stating it may not breach GDPR if...
In a notable declaration, the cybersecurity firm Recorded Future has been marked as 'undesirable' by the Russian Federation, a classification...
In a staggering report by Chainalysis, North Korean hackers have been identified as the leading threat actors behind the theft...
In today's digital landscape, the rise of sophisticated cybersecurity threats, particularly new malware that targets engineering processes within Industrial Control...
Kaspersky products continue to be utilized by US organizations, even amidst a government ban, highlighting a pressing concern over technology...
HIBP In December 2024, the video sharing Community BitView suffered a data breach that exposed 63k customer records. Attributed to...
HIBP In December 2024, data claimed to be breached from the multi-level marketing company Young Living Essential Oils was posted...
HIBP In September 2024, data from the online German gift store schenkYOU was put up for sale on a popular...
CISA Releases Insights from Red Team Assessment of a U.S. Critical Infrastructure Sector Organization Today, CISA released Enhancing Cyber Resilience:...
CISA Adds One Known Exploited Vulnerability to Catalog CISA has added one new vulnerability to its Known Exploited Vulnerabilities Catalog, based...
CISA Releases Six Industrial Control Systems Advisories CISA released six Industrial Control Systems (ICS) advisories on November 26, 2024. These...