A security vulnerability has been identified in Microsoft SharePoint, a popular platform many organizations use to store shared documents, run internal team collaboration spaces, and host other business content. The flaw is a weak authentication issue.This weakness allows an unauthorized person to bypass a built-in security measure if they have ...
Continue reading
A security vulnerability has been identified in Broadcom VMware vCenter, a platform many organizations use to manage the virtual server infrastructure that runs their websites and applications.
This flaw is classified as a path traversal vulnerability, a type of security gap that lets users bypass normal system access controls. If a threat actor ...
Continue reading
A security flaw has been discovered in Microsoft's Internet Key Exchange (IKE) Service Extensions, a component that supports secure network connections for Windows systems. This flaw is categorized as a "double free" vulnerability, a type of software error that can trigger unexpected, unsafe behavior in the affected service.This vulnerability can ...
Continue reading
A security vulnerability has been found in MLflow, a tool some website and application owners use on their hosting accounts to manage machine learning projects. The issue is a type of flaw called server-side request forgery.
If attackers exploit this flaw, they can send requests from your MLflow setup to internal services on your hosting account, ...
Continue reading