Changeflow GovPing

What do you monitor?

Curated feeds for your role. Pick your area and get exactly the sources you need.

Recent changes

Favicon for wid.cert-bund.de

Docker Vulnerabilities Advisory

CERT-Bund has issued an advisory regarding multiple vulnerabilities in Docker, with a CVSS base score of 8.8. The vulnerabilities allow local attackers to bypass security measures and disclose information. A patch is available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Cisco Catalyst SD-WAN Manager XSS Vulnerability

CERT-Bund has issued a security advisory for Cisco Catalyst SD-WAN Manager, detailing a Cross-Site Scripting (XSS) vulnerability. The advisory provides affected product versions and a CVSS score indicating a medium severity. Mitigation guidance is available.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

IBM Operational Decision Manager Vulnerabilities

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in IBM Operational Decision Manager. The vulnerabilities, with a base CVSS score of 7.4, allow attackers to bypass security measures and manipulate files. Affected versions include various interim fixes across multiple release lines.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

libpng Vulnerabilities Allow Remote Code Execution and Denial of Service

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in the libpng library, affecting versions prior to 1.6.56. These vulnerabilities could allow remote attackers to execute arbitrary code or cause a denial of service. The advisory provides mitigation information and details on affected systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

SolarWinds Platform XSS Vulnerabilities Identified

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in the SolarWinds Platform that could allow for Cross-Site Scripting (XSS) attacks. The advisory provides details on affected versions and mitigation strategies. The identified vulnerabilities have a CVSS Base Score of 6.5, rated as medium.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Langflow Vulnerability Allows File Manipulation

CERT-Bund has issued a security advisory for Langflow versions prior to 1.5.1 and Langflow Base prior to 0.5.1, detailing a vulnerability that allows remote, authenticated attackers to manipulate files. The advisory highlights a CVSS base score of 8.8, indicating a high severity.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

IBM InfoSphere Information Server Vulnerability Allows Security Bypass

CERT-Bund has issued a security advisory for IBM InfoSphere Information Server, detailing a vulnerability that allows remote attackers to bypass security measures. The advisory provides a CVSS base score of 6.5 and affects versions prior to 11.7.1.6 DT458455 on Linux, UNIX, and Windows systems.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

Cisco IOS, IOS XE, Secure Firewall Threat Defense Denial of Service Vulnerability

CERT-Bund has issued a security advisory regarding a Denial of Service vulnerability affecting Cisco IOS, Cisco IOS XE, and Cisco Secure Firewall Threat Defense. The vulnerability has a CVSS Base Score of 8.6 and can be exploited remotely.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

OpenBao Vulnerabilities Allow Security Bypass and XSS Attacks

CERT-Bund has issued a security advisory for OpenBao, detailing critical vulnerabilities (CVSS Base Score 9.6) that allow remote attackers to bypass security measures or perform XSS attacks. The advisory affects Open Source OpenBao versions prior to 2.5.2 running on Linux and UNIX.

Priority review Notice Cybersecurity
Favicon for wid.cert-bund.de

RealObjects PDFreactor Multiple Vulnerabilities

CERT-Bund has issued a security advisory regarding multiple vulnerabilities in RealObjects PDFreactor versions prior to 12.5. The vulnerabilities have a high CVSS base score of 8.8 and allow for remote attacks, potentially leading to code execution, denial-of-service, data manipulation, and information disclosure. Mitigation is available.

Priority review Notice Cybersecurity

Showing 12571–12580 of 38,892 changes

1 1256 1257 1258 1259 1260 3890

Get alerts when regulations change

Weekly digest. AI-summarized, no noise.

Free. Unsubscribe anytime.