Citrix, Sophos software impacted by 2024 leap year bugs

February 29, 2024 at 01:30PM Citrix and Sophos products were affected by leap year flaws, leading to unexpected errors for users. Citrix’s HDX HTML5 Video Redirection Service stopped working on all Virtual Delivery Agent machines, prompting a manual date change fix. Sophos also announced problems with security certification validation on HTTPS websites if devices were … Read more

ServiceNow quietly addresses unauthenticated data exposure flaw from 2015

October 26, 2023 at 04:32AM ServiceNow is issuing a fix for a vulnerability that allows unauthenticated attackers to steal sensitive files. The flaw involves default configurations of ServiceNow’s widgets, which can expose personal data. Despite previous code changes, the default configuration still sets widgets to return specified data, making them accessible to attackers. ServiceNow has … Read more