X

Vous n'êtes pas connecté

Maroc Maroc - THECYBERTHRONE.IN - A La Une - 26/12/2024 13:00

CVE-2024-52046 Impacts Apache Mina

CVE-2024-52046 is a critical security vulnerability found in the Apache MINA library. This vulnerability is located within the ObjectSerializationDecoder component, which uses Java’s native serialization mechanisms to decode incoming serialized data. The core issue is the absence of robust security checks and validation during the deserialization process, allowing attackers to craft malicious serialized data that […]

Articles similaires

Sorry! Image not available at this time

Apache ActiveMQ Flaw Enables DoS Attacks via Malformed Network Packets

itsecuritynews.info - 06/Mar 10:36

Security researchers have uncovered a significant vulnerability in Apache ActiveMQ, a popular open-source message broker used by enterprises to route...

Sorry! Image not available at this time

Chrome security flaw enabled spying via Gemini Live assistant

securityaffairs.co - 03/Mar 08:48

A Google Chrome vulnerability lets malicious extensions hijack Gemini Live to spy on users and steal sensitive files. Researchers at Palo Alto...

Sorry! Image not available at this time

Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023

bleepingcomputer.com - 25/Feb 18:01

Cisco is warning that a critical authentication bypass vulnerability in Cisco Catalyst SD-WAN, tracked as CVE-2026-20127, was actively exploited in...

Sorry! Image not available at this time

Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023

bleepingcomputer.com - 25/Feb 18:01

Cisco is warning that a critical authentication bypass vulnerability in Cisco Catalyst SD-WAN, tracked as CVE-2026-20127, was actively exploited in...

Sorry! Image not available at this time

Langflow CSV Agent Flaw Could Let Attackers Execute Arbitrary Code

itsecuritynews.info - 02/Mar 12:16

A critical vulnerability has been discovered in Langflow, a popular low-code tool used for building applications with Large Language Models (LLMs)....

Sorry! Image not available at this time

Langflow CSV Agent Flaw Could Let Attackers Execute Arbitrary Code

itsecuritynews.info - 02/Mar 12:16

A critical vulnerability has been discovered in Langflow, a popular low-code tool used for building applications with Large Language Models (LLMs)....

Sorry! Image not available at this time

AVideo Platform Vulnerability Allows Hackers to Hijack Streams via Zero-Click Command Injection

itsecuritynews.info - 06/Mar 12:34

A highly critical security flaw has been disclosed in the AVideo platform, leaving media servers exposed to complete system takeover. Tracked as...

Sorry! Image not available at this time

AVideo Platform Vulnerability Allows Hackers to Hijack Streams via Zero-Click Command Injection

itsecuritynews.info - 06/Mar 12:34

A highly critical security flaw has been disclosed in the AVideo platform, leaving media servers exposed to complete system takeover. Tracked as...

Sorry! Image not available at this time

Android devices hit by exploited Qualcomm flaw CVE-2026-21385

securityaffairs.co - 03/Mar 10:03

Google confirms that the Qualcomm Android vulnerability CVE-2026-21385 was exploited in real-world attacks. Google has confirmed that CVE-2026-21385...

Sorry! Image not available at this time

Critical Nginx UI flaw CVE-2026-27944 exposes server backups

securityaffairs.co - 08/Mar 19:10

Nginx UI flaw CVE-2026-27944 lets attackers download and decrypt server backups without authentication, exposing sensitive data on public management...