2024-March
What's Changed
- Ivanti Endpoint Manager Code Injection Vulnerability - Advisory by @mahmadhabib076 in #586
- .net infomration disclosure vuln by @ryan-aus in #584
- Microsoft Edge Chromium based Security Feature Bypass Vulnerability - 20240326004 by @DininduSWick in #585
- Update on Past Advisory by @TWangmo in #587
- Apache vulnerabilities by @thiagoai1 in #588
- Firefox Patches Critical Zero-Day Vulnerabilities - 20240327003 by @CharlesRN in #589
- CISA Releases Multiple Critical Infrastructure Related Advisories - 20240327001 by @LSerki in #590
- 20240328001-Apple-Security-Updates-Safari-MacOS by @carel-v98 in #592
- 20240328002 by @TerinaK in #596
- Added new ADSes and Updated the TTP Guideline Table by @DininduSWick in #595
- Markdown format updates to all ADS forms by @DininduSWick in #598
- Linux Kernel Vulnerability - Advisory by @mahmadhabib076 in #599
- 20240402006-JetBrains-TeamCity-Cross-Site-Scripting-Vulnerability by @TWangmo in #600
- WallEscape util-Linux Vulnerability - 20240402004 by @DininduSWick in #601
- GitLab stored xss by @ryan-aus in #602
- 20240402006-JetBrains-TeamCity-Cross-Site-Scripting-Vulnerability by @TWangmo in #604
- Supply Chain Compromise Affecting XZ Utils Data Compression Library - 20240402002 by @CharlesRN in #603
- 20240402001 by @DGOV-Bryce in #605
- 20240404001-VMWare-SD-WAN-Updates by @carel-v98 in #607
- Ivanti Critical Patch for Multiple Products - 20240209001 by @TWangmo in #608
- Create 20240405002-Edge-Chromium-based-Spoofing-Vulnerability.md by @jasonkasih in #609
- 20240405001 by @TerinaK in #610
- 20240405003 by @DGOV-Bryce in #611
- Cisco Vulnerability in Small Business Routers by @CharlesRN in #613
- PGAdmin Remote Code Execution Vulnerability - 20240408001 by @LSerki in #614
- Fixed severities and ordering by @JT-WA in #616
- Podman Buildah Vulnerability - 20240408004 by @DininduSWick in #615
- Pixel zero day patches by @ryan-aus in #617
- Updated (Defanged) code sample for MonikerLink by @DininduSWick in #618
- Removed code example for MonikerLink by @DininduSWick in #619
- 20240410002-Fortinet-Releases-Security-Updates-for-Multiple-Products by @TWangmo in #620
- April 2024 Security Updates by @thiagoai1 in #621
- 20240410004-Adobe Releases Security Updates for Multiple Products by @carel-v98 in #622
- D-link critical vulnerability advisory by @mahmadhabib076 in #623
- 20240410001-D-Link-Critical-Vulnerability by @TWangmo in #624
- Added - Create Chrome-Security-Update-20240412001.md by @jasonkasih in #625
- Revert "20240410001-D-Link-Critical-Vulnerability" by @DGovEnterprise in #626
- Juniper Security Updates by @JT-WA in #627
- Bitdefender Advisory by @CharlesRN in #628
- Palo Alto Networks PAN-OS Command Injection Vulnerability added to CISA Known Exploited Catalog - 20240415001 by @LSerki in #629
- 20240416004-Critical-Rust-Standard-Library-Vulnerability by @TWangmo in #630
- Advisory - Google Chrome V8 Enum Cache Out-Of-Bounds Read RCE Vulnerability by @mahmadhabib076 in #631
- openssf and vuln updates by @adonm in #632
- [StepSecurity] Apply security best practices by @step-security-bot in #633
- Bump mkdocs-material from 9.5.15 to 9.5.18 by @dependabot in #635
- Bump mdformat-mkdocs[recommended] from 2.0.6 to 2.0.9 by @dependabot in #634
- Nodejs April security release by @ryan-aus in #637
New Contributors
- @DGovEnterprise made their first contribution in #626
- @step-security-bot made their first contribution in #633
- @dependabot made their first contribution in #635
Full Changelog: 2024-February...2024-March