
Critical RCE Vulnerability in Atlassian Bamboo
CVE-2023-22516, allows an authenticated attacker to launch arbitrary code.
CVE-2023-22516, allows an authenticated attacker to launch arbitrary code.
Tracked as CVE-2023-23583 (CVSS score: 8.8), the issue has the potential to “allow escalation of privilege and/or information disclosure and/or denial of service via local access.”
The U.S. Cybersecurity & Infrastructure Security Agency has added to its catalog of known exploited vulnerabilities (KEV) three security issues that affect Microsoft devices, a Sophos product, and an enterprise solution from Oracle.
Tracked as CVE-2023-36553, the flaw was given a critical severity score of 9.3 by Fortinet, while the U.S. NIST calculated it as 9.8. This vulnerability is identified as a variant of CVE-2023-34992, a critical-severity issue fixed in October.
The Digital Services Act and Digital Markets Act aim to create a safer digital space where the fundamental rights of users are protected and to establish a level playing field for businesses.
Attention Needed: Critical Vulnerability Found in Apache Hadoop: CVE-2023-26031