Netzwerksicherheit
🔴 CVE-2026-77550: Critical Schwachstelle
A malicious actor with access to the network could exploit an Improper Neutralization of CRLF Sequences vulnerability found in certain...
🔴 CVE-2026-77537: Critical Schwachstelle
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Protect Application...
NETZWERKSICHERHEIT
OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation
OpenAI on Tuesday said it banned a cluster of Russian ChatGPT accounts that used VPNs to bypass access restrictions and...
NETZWERKSICHERHEIT
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations
The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated...
🟠 CVE-2026-53561: High Schwachstelle
An improper authentication vulnerability in HiveServer2 SAML bearer-token validation in Apache Hive 4.0.0 through 4.2.0 (and later unreleased branches) on...
🟠 CVE-2026-67578: High Schwachstelle
FA-50 all versions miss authentication for some configuration. An attacker with access to the vessel's internal network can manipulate the...
🔴 CVE-2026-55976: Critical Schwachstelle
Server-Side Request Forgery (SSRF) in Avro SerDe schema resolution in Apache Hive before 4.2.1 allows an authenticated remote attacker with...
🔴 CVE-2026-59769: Critical Schwachstelle
FA-50 all versions contain hard-coded credentials. An attacker, who knows the credentials and has access to the vessel's internal network,...
🔴 CVE-2026-49845: Critical Schwachstelle
SQL injection in Hive Metastore direct SQL partition-name resolution in Apache Hive before 4.2.1 on all platforms allows authenticated users...
🔴 CVE-2026-63586: Critical Schwachstelle
The web-based management interface uses a modified uhttpd server with CGI shell scripts. The HTTP Basic Authentication username, taken directly...