CISA Flags 6 Vulnerabilities - Apple, Apache, Adobe , D-Link, Joomla Under Attack
ID: c7256533-dd0f-5247-8b5f-d92ff7848072
STIX ID: report--c7256533-dd0f-5247-8b5f-d92ff7848072
Feed Name: The Hacker News
CISA added six vulnerabilities to its Known Exploited Vulnerabilities catalog due to evidence of active exploitation, including a remote code execution issue in Apache Superset (CVE-2023-27524) and multiple critical Adobe ColdFusion deserialization flaws (CVE-2023-38203, CVE-2023-29300). The advisory also highlights an Apple code execution flaw previously used in Operation Triangulation, a D-Link command injection, and a Joomla access-control issue; federal agencies were advised to apply fixes by Jan 29, 2024, and Fortinet reported high-volume ColdFusion attack detections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
