Collected every two hours from specialised publications — each link leads to the original article.
Vulnerabilities was discovered in MariaDB, a SQL database server compatible with MySQL. CVE-2025-30693
Cybersecurity researchers are calling attention to a new Linux cryptojacking campaign that's targeting publicly accessible Redis servers.The malicious activity…
PostgreSQL GB18030 encoding validation can read one byte past end of allocation for text that fails validation. (CVE-2025-4207) References: - https://bugs.mage…
Unlimited output buffer for unauthenticated clients has been fixed in the key¢''value database Redis. For Debian 11 bullseye, this problem has been fixed in ve…
PostgreSQL could be made to execute arbitrary code if it received specially crafted input.
A vulnerability was discovered in MariaDB, a SQL database server compatible with MySQL. A privileged attacker could cause a Denial-of-Service (DoS) of the Mari…
Recent vulnerabilities in BeyondTrust Remote Support ( CVE-2024-12356 ) and PostgreSQL ( CVE-2025-1094 ) are being actively exploited by threat actors and requ…
Recent vulnerabilities in BeyondTrust Remote Support ( CVE-2024-12356 ) and PostgreSQL ( CVE-2025-1094 ) are being actively exploited by threat actors and requ…
PostgreSQL quoting APIs miss neutralizing quoting syntax in text that fails encoding validation. (CVE-2025-1094) References: - https://bugs.mageia.org/show_bug…
Threat actors who were behind the exploitation of a zero-day vulnerability in BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products in De…
Redis' Lua library commands may lead to remote code execution. (CVE-2024-46981) Redis allows denial-of-service due to malformed ACL selectors. (CVE-2024-51741)
Redis 7.2.7 Released Mon 6 Jan 2025 12:30:00 IDT Upgrade urgency SECURITY: See security fixes below. Security fixes (CVE-2024-46981) Lua script commands may le…
Multiple vulnerabilities have been discovered in PostgreSQL, the worst of which could lead to arbitrary code execution.
Multiple vulnerabilities have been fixed in the key¢''value database Redis. CVE-2022-35977
Redis Community Edition 7.2.6 Released Wed 02 Oct 2024 20:17:04 IDT Upgrade urgency SECURITY: See security fixes below. Security fixes CVE-2024-31449 Lua libra…
A vulnerability was discovered in MariaDB, a SQL database server compatible with MySQL. An attacker could generate a malicious dump file which could execute sh…
It was discovered that there were a number of issues in Redis, a popular key-value database: * CVE-2023-45145: On startup, Redis began listening on a Unix
Cybersecurity researchers have unpacked a new malware strain dubbed PG_MEM that's designed to mine cryptocurrency after brute-forcing their way into PostgreSQL…
Multiple vulnerabilities have been discovered in Redis, the worst of which may lead to a denial of service or possible remote code execution.
PyMySQL could be vulnerable to SQL injection attacks.
Two critical security vulnerabilities were found in pgAdmin, the open-source administration tool for PostgreSQL . The vulnerabilities assigned CVE-2024-4216 an…
Multiple vulnerabilities have been discovered in MariaDB, the worst fo which can lead to arbitrary execution of code.
A recent attack campaign targeted publicly accessible Docker , Hadoop , Confluence, and Redis deployments. The attackers exploited misconfigurations and known …
PostgreSQL could be made to run arbitrary SQL.