Secure Bulletin Navigating the cyber sea with knowledge
Home > Categoria > Vulnerability
Latest news

DoS vulnerability CVE-2024-56332 in Next.js, update now

4 January 2025  |  securebulletin.com  |  Vulnerability

Next.js, a popular React framework, has recently addressed a critical denial-of-service (DoS) vulnerability identified as CVE-2024-56332. This security flaw was discovered in the server actions feature of Next.js,...

>> read more

Urgent: update your .NET installer link, new Microsoft issue

30 December 2024  |  securebulletin.com  |  Vulnerability

Microsoft has issued an urgent warning to .NET developers regarding the imminent shutdown of two critical domains used for installing .NET components: dotnetcli.azureedge.net and dotnetbuilds.azureedge.net. This action is...

>> read more

Curl vulnerability exposes user credentials in redirects

16 December 2024  |  securebulletin.com  |  Vulnerability

A recently discovered vulnerability in cURL, identified as CVE-2024-11053, poses a significant risk by potentially exposing user credentials during HTTP redirects. This flaw affects various applications that utilize...

>> read more

Critical vulnerabilities in Skoda and Volkswagen infotainment systems

12 December 2024  |  securebulletin.com  |  Vulnerability

Cybersecurity researchers from PCAutomotive have uncovered 12 significant vulnerabilities in the infotainment systems of certain Skoda and Volkswagen vehicles, exposing over 1.4 million cars to potential exploitation. These...

>> read more

QNAP NAS vulnerabilities

9 December 2024  |  dark6  |  Vulnerability

QNAP NAS systems, widely used for data storage, have been flagged for several critical vulnerabilities that pose significant risks to users and organizations. Here’s what you need to...

>> read more

Critical NTLM Vulnerability in Windows

8 December 2024  |  dark6  |  Vulnerability

Security researchers have identified a critical vulnerability affecting all Windows Workstation and Server versions, including Windows 7, Server 2008 R2, Windows 11 (v24H2), and Server 2022. This vulnerability...

>> read more

Apache Tomcat vulnerability (CVE-2024-38286)

24 September 2024  |  dark6  |  Vulnerability

A severe vulnerability has emerged in Apache Tomcat, a widely used Java application server. Identified as CVE-2024-38286, this flaw poses a serious risk to organizations that rely on...

>> read more

Windows MiniFilter vulnerability: a threat to EDR security

18 September 2024  |  dark6  |  Vulnerability

Endpoint Detection and Response (EDR) solutions are essential for modern cybersecurity defenses. However, research has revealed a vulnerability in Windows MiniFilter drivers that can be exploited to prevent...

>> read more