Buscar noticias

Ctrl/Cmd para multiselección
Total: 3981

It was discovered that tgt incorrectly tried to achieve entropy by calling rand without srand. An attacker could possibly use this issue to make tgt generate an identical sequence of challenges, resulting in authentication bypass.

Ubuntu 2026-05-27 15:01 UTC · 2026-05-27 12:01 -03

It was discovered that Apache Tika incorrectly handled XML external entities when parsing XFA content in PDF files. An attacker could possibly use this issue to obtain sensitive information or send malicious requests to internal resources …

Ubuntu 2026-05-27 14:10 UTC · 2026-05-27 11:10 -03

It was discovered that Postorius did not properly escape HTML in message subjects when rendering the Held messages pop-up. An attacker could possibly use this issue to inject arbitrary HTML, resulting in exposure of sensitive information.

Ubuntu 2026-05-27 13:28 UTC · 2026-05-27 10:28 -03

It was discovered that Apache Commons BeanUtils incorrectly allowed access to the declaredClass property of Java enum objects when handling externally supplied property paths. An attacker could possibly use this issue to execute arbitrary …

Ubuntu 2026-05-27 13:20 UTC · 2026-05-27 10:20 -03