A vulnerability has been found in Atlassian JIRA Server and Data Center up to 8.5.17/8.13.9/8.18.1 (Bug Tracking Software) and classified as problematic. This vulnerability affects an unknown part of the file /rest/api/latest/projectvalidate/key of the component Private Project Handler. Upgrading to version 8.5.18, 8.13.10 or 8.18.2 eliminates this vulnerability.
Atlassian JIRA Server/Data Center up to 8.5.17/8.13.9/8.18.1 Private Project key information disclosure
- Virtual Patching
- September 8, 2021
- 10:04 am
CVE-2024-31869 : APACHE AIRFLOW UP TO 2.8.4 CONFIGURATION UI PAGE INFORMATION DISCLOSURE
Description Airflow versions 2.7.0 through 2.8.4 have a vulnerability that allows an authenticated user to see sensitive provider configuration via
CVE-2024-24856 : LINUX KERNEL UP TO 6.8 ACPI_ALLOCATE_ZEROED NULL POINTER DEREFERENCE
Description The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code directly dereferences the pointer
CVE-2024-2912 : BENTOML FRAMEWORK UP TO 1.2.4 POST REQUEST INSECURE DEFAULT INITIALIZATION OF RESOURCE
Description An insecure deserialization vulnerability exists in the BentoML framework, allowing remote code execution (RCE) by sending a specially crafted