Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

kb.cert.org

CERT Recently Published Vulnerability Notes

Get the latest updates from CERT Recently Published Vulnerability Notes directly as they happen.

Follow now 134 followers

Latest posts

Last updated about 5 hours ago

VU#976247: Antivirus and Endpoint Detection and Response Archive Scanning Engines may not properly scan malformed zip archives

about 5 hours ago

Overview Malformed ZIP headers can cause antivirus and endpoint detection and response...

VU#772695: A flawed TLS handshake implementation affects Viber Proxy in multiple platforms

4 days ago

Overview An attacker can reliably identify and block Viber’s Cloak‑mode proxy traffic...

VU#431821: MS-Agent does not properly sanitize commands sent to its shell tool, allowing for RCE

7 days ago

Overview A command injection vulnerability was identified in the MS-Agent framework that...

VU#504749: PyMuPDF path traversal and arbitrary file write vulnerabilities

25 days ago

Overview A path traversal vulnerability leading to arbitrary file write exist in...

VU#458422: CASL Ability contains a prototype pollution vulnerability

27 days ago

Overview A prototype pollution vulnerability present in CASL Ability versions 2.4.0 through...

VU#481830: libheif Uncompressed Codec Lacks Bounds Check Leading to Application Crash

about 2 months ago

Overview An out-of-bounds memory access vulnerability exists in the uncompressed decoder component...

VU#102648: Code Injection Vulnerability in binary-parser library

about 2 months ago

Overview The binary-parser library for Node.js contains a code injection vulnerability that...

VU#458022: Open5GS WebUI uses a hard-coded secrets including JSON Web Token signing key

about 2 months ago

Overview The Open5GS WebUI component contains default hardcoded secrets used for security-sensitive...

VU#271649: Stack-based buffer overflow in libtasn1 versions v4.20.0 and earlier

about 2 months ago

Overview A stack-based buffer overflow vulnerability exists in GNU libtasn1, a low-level...

VU#818729: Safetica contains a kernel driver vulnerability

about 2 months ago

Overview Kernel driver ProcessMonitorDriver.sys in Safetica's endpoint client x64, versions 10.5.75.0 and...

VU#244846: Genshi

about 2 months ago

Overview A Server-Side Template Injection (SSTI) vulnerability exists in the Genshi template...

VU#924114: dr_flac contains an integer overflow vulnerability that allows for DoS when provided a crafted file

about 2 months ago

Overview dr_flac, an open-source FLAC audio decoder, part of the dr_libs audio...