CVE-2022-24785 - A Simple Guide to the Path Traversal Vulnerability in Moment.js
Moment.js is one of the most popular JavaScript libraries for parsing, validating, manipulating, and formatting dates. Many Node.js and JavaScript applications use it
CVE-2022-28391 Using netstat to print a DNS PTR record's value to a VT compatible terminal can lead to remote code execution.
This issue is due to insecure handling of the TERM environment variable, which causes the terminal to inherit the value of the TERM variable from
CVE-2022-24758 - How Jupyter Notebook Leaked Sensitive Data in Server Logs
Jupyter Notebook is a powerful, web-based notebook environment used by data scientists, researchers, and students all over the world. It allows users to create
CVE-2022-22941 An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1
This issue has been fixed in version 3.0.2 and above. The correct behavior is that if a user has a command targeted to
CVE-2022-22934 An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1
This can be leveraged by an attacker to execute commands against the master or to impersonate the master and hijack active minions. This vulnerability does
Episode
00:00:00
00:00:00