CVE-2022-26133 The Atlassian Bitbucket Shared Secret Cluster Authenticator in versions 5.14.0 and later, 7.7.0 and later, 7.18.4 and later, 7.19.4 and later and 7.20.0 have a remote unauthenticated attacker.
This vulnerability is due to incorrectly implemented Java deserialization. An attacker can exploit this vulnerability by sending malicious data to the affected server. This can
CVE-2022-0070 Incomplete fix for CVE-2021-3100
This will ensure that the target JVMs are isolated from each other and that the hotpatch cannot be applied to a process that is already
CVE-2022-21441 Vulnerability in Oracle Fusion Middleware (12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0) that could result in data being compromised.
An information disclosure flaw was found in the way the Apache HTTP Server processed request chunked encoding. An attacker could use this flaw to perform
CVE-2022-25165 An TOCTOU race condition was found in Amazon AWS VPN Client 2.0.0.
As an example, the following piece of code causes a SYSTEM log file to be created with the value of /etc/passwd:
This can be
CVE-2022-24070 Subversion's mod_dav_svn is vulnerable to memory corruption. It may attempt to use memory which has already been freed.
This may allow an attacker to execute arbitrary code on the server. How might I avoid this? It is recommended that you upgrade your Subversion
Episode
00:00:00
00:00:00