Atlassian Patches High-Severity Vulnerabilities in Confluence, Crucible, Jira

June 20, 2024 at 06:58AM Atlassian released software updates addressing high-severity vulnerabilities in Confluence, Crucible, and Jira. The Confluence update resolves six security defects, including broken access control and server-side request forgery flaws. Crucible versions 4.8.15 and higher address a deserialization vulnerability, while Jira updates fix an information disclosure issue. No known exploitation of these … Read more

Microsoft Issues Patches for 51 Flaws, Including Critical MSMQ Vulnerability

June 12, 2024 at 12:57AM Microsoft released 51 security updates in its Patch Tuesday for June 2024, addressing 51 vulnerabilities, with one Critical and 50 Important. No active exploits were reported, with a third-party advisory CVE-2023-50868 posing a denial-of-service issue. Various other RCE vulnerabilities were also resolved, affecting different Microsoft products. Other vendors have also … Read more

SAP Patches Critical Vulnerability Exposing User, Business Data

February 14, 2024 at 05:21AM SAP released 13 new and updated security notes addressing critical and high-severity vulnerabilities in its February 2024 Security Patch Day. The critical issue, CVE-2024-22131, allows unauthorized access and potential system unavailability. Customers are advised to apply patches promptly due to the risk of exploitation by threat actors targeting SAP products. … Read more