Skip to content

Underground News

Header Image
Author

GitHub

925 Posts

Featured

Posted byGitHub
[github.com/sigstore/cosign] cosign’s `cosign verify-attestaton –type` can report a false positive if any attestation exists
Posted byGitHub
[github.com/sigstore/policy-controller] PolicyController before 0.2.1 may bypass attestation verification
Posted byGitHub
[nbconvert] nbconvert vulnerable to cross-site scripting (XSS) via multiple exploit paths
Posted byGitHub
[owning_ref] owning_ref vulnerable to multiple soundness issues

[apache-superset] Improper Encoding or Escaping of Output in Apache Superset

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

Improper output neutralization for Logs. A specific Apache Superset HTTP endpoint allowed for an authenticated user to forge log entries or inject malicious content into logs.
References

https://nvd.nist.gov/vuln/detail/CVE-2021-42250
https://lists.ap…

[apache-superset] Insufficiently Protected Credentials in Apache Superset

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

Apache Superset up to and including 1.3.1 allowed for database connections password leak for authenticated users. This information could be accessed in a non-trivial way.
References

https://nvd.nist.gov/vuln/detail/CVE-2021-41972
https://lists.apache….

[com.typesafe.akka:akka-http] Uncontrolled Recursion in Akka HTTP

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

Akka HTTP 10.1.x and 10.2.x before 10.2.7 can encounter stack exhaustion while parsing HTTP headers, which allows a remote attacker to conduct a Denial of Service attack by sending a User-Agent header with deeply nested comments.
References

https://nv…

[org.springframework.cloud:spring-cloud-openfeign-core] Exposure of Resource to Wrong Sphere in Spring Cloud OpenFeign

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/23/2022

In Spring Cloud OpenFeign 3.0.0 to 3.0.4, 2.2.0.RELEASE to 2.2.9.RELEASE, and older unsupported versions, applications using type-level @RequestMappingannotations over Feign client interfaces, can be involuntarily exposing endpoints corresponding to @R…

[shell-quote] Improper Neutralization of Special Elements used in a Command in Shell-quote

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

The shell-quote package before 1.7.3 for Node.js allows command injection. An attacker can inject unescaped shell metacharacters through a regex designed to support Windows drive letters. If the output of this package is passed to a real shell as a quo…

[edu.stanford.nlp:stanford-corenlp] Improper Restriction of XML External Entity Reference in Stanford CoreNLP

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

corenlp is vulnerable to Improper Restriction of XML External Entity Reference
References

https://nvd.nist.gov/vuln/detail/CVE-2021-3869
https://github.com/stanfordnlp/corenlp/commit/5d83f1e8482ca304db8be726cad89554c88f136a
https://huntr.dev/bounties/…

[apache-superset] Improper Neutralization of Input During Web Page Generation in Apache Superset

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

Apache Superset up to and including 1.1 does not sanitize titles correctly on the Explore page. This allows an attacker with Explore access to save a chart with a malicious title, injecting html (including scripts) into the page.
References

https://nv…

[apache-superset] Improper Neutralization of Special Elements used in an SQL Command in Apache Superset

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

Apache Superset up to and including 1.3.0 when configured with ENABLE_TEMPLATE_PROCESSING on (disabled by default) allowed SQL injection when a malicious authenticated user sends an http request with a custom URL.
References

https://nvd.nist.gov/vuln/…

[edu.stanford.nlp:stanford-corenlp] Improper Restriction of XML External Entity Reference in Stanford CoreNLP

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202206/22/2022

corenlp is vulnerable to Improper Restriction of XML External Entity Reference
References

https://nvd.nist.gov/vuln/detail/CVE-2021-3878
https://github.com/stanfordnlp/corenlp/commit/e5bbe135a02a74b952396751ed3015e8b8252e99
https://huntr.dev/bounties/…

[apache-airflow] Missing Authentication for Critical Function in Apache Airflow

  • Posted inUncategorized
  • Posted byGitHub
  • 05/25/202207/26/2022

The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticated users to hit that endpoint to add/modify Airflow variables used in DAGs, potentially resulting in a denial of service, infor…

Posts navigation

Previous Posts 1 … 48 49 50 51 52 … 93 Next Posts
Underground News
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close