The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
Several security issues were fixed in Apache HTTP Server.
Researchers have found a high-severity bug in Apache Cassandra allowing code execution attacks. Since the…Remote Code Execution Bug Found In Apache Cassandra –…
Researchers have revealed details of a now-patched high-severity security vulnerability in Apache Cassandra that, if left unaddressed, could be abused to gain …
Two vulnerabilities have been discovered in the Apache HTTP server: CVE-2021-44224
Multiple security vulnerabilities have been discovered in Apache Log4j 1.2, a Java logging framework, when it is configured to use JMSSink, JDBCAppender, JMSAp…
Apache Log4j 1.2 could be made to crash or run programs if it received specially crafted input.
Several security issues were fixed in Apache HTTP Server.
Several security issues were fixed in Apache HTTP Server.
Two vulnerabilities have been discovered in the Apache HTTP server: CVE-2021-44224
Following the “Log4Shell” mayhem, Apache has released multiple updates to its Log4j library addressing the…Apache Releases Log4j 2.17.1 Fixing Another Code Exe…
Apache Log4j2, a Java Logging Framework, is vulnerable to a remote code execution (RCE) attack where an attacker with permission to modify the logging configur…
The Apache Software Foundation (ASF) on Tuesday rolled out fresh patches to contain an arbitrary code execution flaw in Log4j that could be abused by threat ac…
Several security vulnerabilities were found in Apache Log4j2, a Logging Framework for Java, which could lead to a denial of service or information disclosure.
Updated apache packages fix security vulnerabilities: A crafted URI sent to httpd configured as a forward proxy (ProxyRequests on) can cause a crash (NULL poin…
Updated apache-mod_security packages fix security vulnerability: ModSecurity mishandles excessively nested JSON objects. Crafted JSON objects with nesting tens…
Apache has released another update shortly after the second Log4j update addressing a previously “incomplete…Apache Releases Third Major Log4j Update To Fix A …
The issues with Log4j continued to stack up as the Apache Software Foundation (ASF) on Friday rolled out yet another patch — version 2.17.0 — for the widely us…
Apache Log4j 2 could be made to crash if it received specially crafted input.
It was found that Apache Log4j2, a Logging Framework for Java, did not protect from uncontrolled recursion from self-referential lookups. When the logging conf…
It was discovered that modsecurity-apache, an Apache module to tighten the Web application security, does not properly handles excessively nested JSON objects,…
After the disastrous Log4j vulnerability disrupted the online world, another vulnerability surfaced online. It turns…Another Apache Log4j Bug Discovered – Patc…
As the critical “Log4Shell” bug stirs up the internet, the cybersecurity community is rushing for…‘Vaccine’ For Apache Log4j Vulnerability Released Amidst Acti…
Chen Zhaojun of Alibaba Cloud Security Team discovered a critical security vulnerability in Apache Log4j, a popular Logging Framework for Java. JNDI features u…
Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Service Pack 10 zip release for Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, and Microsoft Win…