CVE-2024-44204 - How A Simple Logic Flaw in iOS 18 Exposed Your Saved Passwords to VoiceOver—Full Exploit Story
Apple’s iOS and iPadOS updates are usually about squashing bugs and protecting your device from prying eyes. But sometimes, new versions ship with surprises.
CVE-2024-47554 - How a Tiny XML File Can Grind Your Java Server—The Uncontrolled Resource Consumption in Apache Commons IO
---
Summary:
A new vulnerability registered as CVE-2024-47554 affects Apache Commons IO versions 2. up to—but not including—2.14.. It’s rooted
CVE-2024-47561 - How Schema Parsing in Apache Avro (Java SDK) Opens the Door to Remote Code Execution
---
Introduction
If you're building apps that handle data serialization with Apache Avro, you should sit up and take note: CVE-2024-47561 exposes
CVE-2024-45519 - How Unauthenticated Users Can Exploit Zimbra’s postjournal Service
Zimbra Collaboration Suite (ZCS) is widely used for business email and collaboration. It serves millions of users globally. However, in early 2024, a serious vulnerability
CVE-2024-20432 - How Attackers Can Take Over Cisco Nexus Dashboard Fabric Controller with Simple API Calls
A new security bug, tagged as CVE-2024-20432, has been found in Cisco Nexus Dashboard Fabric Controller (NDFC). This bug allows attackers who already
Episode
00:00:00
00:00:00