Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-31257

A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.31), Mendix Applications using Mendix 8 (All versions < V8.18.18), Mendix Applications using Mendix 9 (All versions < V9.14.0), Mendix Applications using Mendix 9 (V9.12) (All versions < V9.12.2), Mendix Applications using Mendix 9 (V9.6) (All versions < V9.6.12). In case of access to an active user session in an application that is built with an affected version, it’s possible to change that user’s password bypassing password validations within a Mendix application. This could allow to set weak passwords.

CVE
#vulnerability#pdf

%PDF-1.5 %���� 54 0 obj << /Length 2243 /Filter /FlateDecode >> stream x��Z[sۺ~���[�� ����O�drz����N’9�D��ȢJII�� �2)� ]*��8"!`����M���9�mzv�Z����N�����j��b&�.�O�$���f4�Ʀ�l�+Gc��|�=4],��Mcӗ�?7�_��b7߾|u=���џ���^M��s�@!��G1�%�O�d���P"�M����T�()�y�L��qF�Q�gC&�g�&��.�Vg�^����8iL�A��mt��b,�0��86�)E�3�"���u f���`��R�A�lS���V�����)L�kzI�2-p�b}D8"xg8��S�4�b>�6�� ‘��A�M�5=�7���(�q�T�e�چ,�-\�� w����`��]�=Z���H�t�\e��K�Df8�C2N�TC� "�{�&��uف¬�M;�U���=�@ P���BK�V\��A�e�E�_��!0�XhD#�1$� �v����|�͋U ���6{�n%O9�`L͘q��#R��c�ن17�E� cO�R1�we�����#KӬ���0Z2�ҏ���q’�0�+�"<�6�dq��%*`�J��[��֌��%¥d �)�b]m9����ͻw�#E������N?j��I�h�O�ɢ�s eO��m��?ϑ.�*�<�F����h/�Tyd��U|��o#X�g�e�o�6|q��b/U�6j4߻��=�j[�6�BǛK��\+g�m�Q֥����6 4�+�9�n�}�v;����-�q�\z���W�������l�8�_F� ����7��(��P��w��֑�ǎ��ZfAդ��c<���e�h8>���ѭ���D�Hq���ڄ s<�XZ��>�Z�e�� d�м���}nG��X��K�1<�n}{6�V�֡\�g��\f��f\Dq���9B�m/}��o×1�6�#3�$J��D9ӉR K��R� �:����ׯ^N_]�TlH����P�r�V��3�Ky !�X��( ���Wט�.o^N’-8X��0���CX�1�i�F��e{��)��&�’B�dd��(L*�T|�Ꮫ���[r��JAIC��S#��7/\��O$C�nѐ.�ق ]m��R�g��.9h�nl�8��է�v�q��*�e���6g��k;N�5RP�hw�@D@��}������efQ� �d�@’�9�����tpg�0�C"��M�\�/�P�� K G�7�8�@���2w�H\ ������S���AFL+&�d�Q$�C��bh���؄==%@�����+$A2f���Q_,���������5�"X�no��S��ê�s�d������o#��#��bW��G�(<��w`W~��[�q.�e�BT�R �R��j%R������P�=�,}�<�+� ��C���02�B�2Z:���������z���|Q�C)��m%P�� jU@�r���y1>0’J4�m��(�����1�����aM�^N�f|^��� �R�NX)�=����V�,0<��1`O�6���3��%=+��Y�k %�R’,��w���`��#� ��U��C���� J_} � �db`���#���x=�GZ2w�:\�f5��[�|��_�������;�*�\I�_�U�qM� �*$�e ��V��c� � ��@�U��wہ� �@e@zP��g�(䣆O�3�c�����n�vP[WΪ�VH^��U�R�W#�V��w�.����/EXo}r��P �����.�[

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda