The Apache Software Foundation has released a critical security update for its widely used Log4j logging library. A newly discovered vulnerability,...
Vous n'êtes pas connecté
Maroc - THECYBERTHRONE.IN - A La Une - 26/12/2024 13:00
CVE-2024-52046 is a critical security vulnerability found in the Apache MINA library. This vulnerability is located within the ObjectSerializationDecoder component, which uses Java’s native serialization mechanisms to decode incoming serialized data. The core issue is the absence of robust security checks and validation during the deserialization process, allowing attackers to craft malicious serialized data that […]
The Apache Software Foundation has released a critical security update for its widely used Log4j logging library. A newly discovered vulnerability,...
A critical security vulnerability in LangChain, one of the world’s most widely deployed AI frameworks, enables attackers to extract environment...
A critical security vulnerability in LangChain, one of the world’s most widely deployed AI frameworks, enables attackers to extract environment...
A critical vulnerability in LangChain’s core library (CVE-2025-68664) allows attackers to exfiltrate sensitive environment variables and potentially...
A critical vulnerability in LangChain’s core library (CVE-2025-68664) allows attackers to exfiltrate sensitive environment variables and potentially...
A critical remote code execution vulnerability in Gladinet Triofox is now under active exploitation by threat actors, and security researchers have...
MongoDB has disclosed a critical security vulnerability tracked as CVE-2025-14847 that could allow attackers to extract uninitialized heap memory from...
MongoDB has disclosed a critical security vulnerability tracked as CVE-2025-14847 that could allow attackers to extract uninitialized heap memory from...
A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...
A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...