Tag: Vulnerabilities

Warning to developers: Stay away from these 10 VSCode extensions

Malicious extensions that install a cryptominer were released just as the weekend started. Credit: SkillUp…

Big hole in big data: Critical deserialization bug in Apache Parquet allows RCE

Successful exploitation could allow attackers to steal data, install malware, or take full control over…

Google fixes GCP flaw that could expose sensitive container images

The flaw could allow attackers to access restricted container images, potentially leading to privilege escalation,…

Thousands of open source projects at risk from hack of GitHub Actions tool

Researchers say compromised tool in the GitHub CI/CD environment stole credentials; infosec leaders need to…

Critical RCE flaws put Kubernetes clusters at risk of takeover

The vulnerabilities dubbed IngressNightmare can allow unauthenticated users to inject malicious NGINX configurations and execute…

Warning for developers, web admins: update Next.js to prevent exploit

Install the latest version to close critical authorization bypass vulnerability. Credit: Gorodenkoff / Shutterstock Developers…