A security vulnerability has been found in MariaDB, a widely used database software that many websites rely on to store user data, site content, and other important information. The flaw impacts specific MariaDB versions: 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8.1 through 11.8.7, and 12.3.1, but only if the ...
Continue reading
A security vulnerability has been found in Metabase, a popular data analysis and reporting tool used by many websites to manage and visualize their data. This flaw is a SQL injection issue, which allows unauthenticated remote attackers (people who do not have login access to your systems) to inject harmful, custom database commands directly into ...
Continue reading
A security flaw has been found in a core Windows system component called the Ancillary Function Driver for WinSock, which manages network-related tasks for Windows computers and servers. The flaw is a type of coding error called a use-after-free vulnerability: this occurs when software tries to use a block of system memory after it has already ...
Continue reading
This notice covers a security flaw identified in two Cisco firewall products: the Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD).
The flaw, a type of heap inspection weakness, can be exploited by an unauthenticated, remote attacker (someone without approved access credentials to the device who is ...
Continue reading