

The camel-hessian component in Apache Camel 2.x before 2.19.4 and 2.20.x before 2.20.1 is vulnerable to Java object de-serialisation vulnerability. De-serializing untrusted data can lead to security flaws. The camel-castor component in Apache Camel 2.x before 2.19.4 and 2.20.x before 2.20.1 is vulnerable to Java object de-serialisation vulnerability. All users are urged to move to a fixed version and change passwords used by Veritas NetBackup to access the OST shares on the NetApp AltaVault as a precaution.Īmazon Key through mishandles Cloud Cam 802.11 deauthentication frames during the delivery process, which makes it easier for (1) delivery drivers to freeze a camera and re-enter a house for unfilmed activities or (2) attackers to freeze a camera and enter a house if a delivery driver failed to ensure a locked door before leaving.

A malicious website can execute requests against an ephemeral port on localhost that are then evaluated as elixir code.ĪltaVault OST Plug-in versions prior to 1.2.2 may allow attackers to obtain sensitive information via unspecified vectors. Please note that some of the information in the bulletin is compiled from external, open-source reports and is not a direct result of CISA analysis.Įlixir's vim plugin, alchemist.vim is vulnerable to remote code execution in the bundled alchemist-server. Patch information is provided when available. This information may include identifying information, values, definitions, and related links.
