Watching software stacks for vulnerabilities, and letting you know about it.

Joined May 2015
3 Photos and videos
stack πŸ‘€ watch retweeted
16 Nov 2021
I created a free weekly newsletter for vendor security advisories: advisoryweek.com/ it includes advisories from Apple, Adobe, Microsoft, Ubuntu, RedHat, and others.

4
4
4 new Microsoft Exchange Remote Code Execution Vulnerabilities were published this week: stack.watch/product/microsof… Unique from those published in March

Here are some of the highest severity security vulnerabilities published so far this month (March 2021) πŸ‘‡
1
OpenSSH before version 8.5 published a double free vulnerability (CVE-2021-28041): stack.watch/product/openbsd/…

1
Several Linux Kernel Vulnerabilities were published in March: stack.watch/product/linux/li… the highest scored looks to be at 7.8 out of 10

3 New Ruby on Rails vulnerabilities published in June, 1 scored Critical, one High, and one Medium. stack.watch can keep you keep an eye on Ruby on Rails vulnerabilities: stack.watch/product/rubyonra…

XSS issue in Angular < 1.8.0 CVE-2020-7676 stack.watch/product/angularj…

1
Several new Chrome Vulnerabilities dropped this week: stack.watch/product/google/c… including two CVEs (CVE-2011-2863, CVE-2011-1805) which were reserved in 2011, but not published until June 3rd, 2020 πŸ€”

Want to know when your Apple Watch has security vulnerabilities? Keep an eye on it here: stack.watch/product/apple/wa…
Four new security vulnerabilities patched in Joomla! CMS this month, two scored as high severity (CSRF, Guest Permission) and two medium (both XSS): stack.watch/product/joomla/j…

New critical vulnerability in Docker Engine < 19.03.11 (CVE-2020-13401). Watch docker vulnerabilities here: stack.watch/product/docker/

Microsoft Excel: Remote code execution vulnerability caused by failure to properly handle objects in memory CVE-2020-0901 stack.watch/product/microsof…

1
A few high severity vulnerabilities recently patched in SQLite. CVE-2020-13434 (integer overflow) and CVE-2020-13435 (seg fault). stack.watch/product/sqlite/s…

Critical OS command execution vulnerability in Python jw.util (CVE-2020-13388) was published on Friday. stack.watch/product/python/

Several new CVE's published for Chrome today: stack.watch/product/google/c… including 4 high severity heap corruption exploits.
A new PHP File Upload Vulnerability was just published yesterday: CVE-2019-11048. You can signup to follow PHP vulnerabilities with stack.watch here: stack.watch/product/php/php/
Keep an eye on Laravel Security Issues: stack.watch/product/laravel/ #laravel #laravelphp #php