Summary A significant vulnerability (CVE-2024-41110) was recently discovered in Docker Engine version 18.09.1.Although the issue was identified and fixed in 2019, the patch did not apply to other major versions, resulting in regression. The vulnerability was assigned a CVSS score of 10 (critical). Details About The Vulnerability Users with access to the Docker daemon can execute any Docker command. To enhance access control, Docker utilizes advanced authorization plugins like AuthZ. The AuthZ plugin is responsible…
In our recent webinar recent webinar title ‘A CISO’s Checklist for Securing APIs and Applications’, we delved into the concept of…
We’re gearing up with some seriously cool stuff for Black Hat! But first, a little sneak peek – not just…
Polyfill.io helps web developers achieve cross-browser compatibility by automatically managing necessary polyfills. By adding a script tag to their HTML,…
Labeled as CVE-2024-6387, the recently discovered vulnerability in OpenSSH has become a serious cause for concern among Linux servers. OpenSSH…
A security flaw that impacts specific versions of GitLab’s Community and Enterprise Edition products was just detected. This vulnerability can…
SQL Injection Exposure in Promokit.eu Threatens Facebook’s PrestaShop Customers PrestaShop is a free, open-source E-commerce platform launched in 2007. Built…
ASUS announces major Firmware Update ASUS recently issued a firmware update to resolve a critical security vulnerability affecting seven different…
On March 31st, 2024, The Payments Card Industry Standards Security Council (PCI SSC) officially retired version 3.2.1 of the PCI…
Whenever a company is notified about or discovers a critical flaw in their system/application that has the potential to be…