High-severity GitLab flaw lets attackers take over accounts

May 23, 2024 at 01:50PM GitLab addressed a high-severity XSS vulnerability allowing unauthenticated attackers to compromise user accounts. Additionally, six medium-severity flaws were fixed, including a CSRF issue and a denial-of-service bug. These vulnerabilities allowed for account takeovers and disruption of services. GitLab urged immediate software updates due to potential impacts on sensitive data and … Read more

SAP’s First Patches of 2024 Resolve Critical Vulnerabilities

January 10, 2024 at 08:33AM SAP has issued patches for critical vulnerabilities in Business Application Studio, Web IDE, and Edge Integration Cell, marking its first patches of 2024. The post on SecurityWeek highlights the significance of these updates in addressing potential security threats. Based on the meeting notes, it appears that SAP has released patches … Read more