Dec. 22, 2023, 3:22 p.m. | Mary

AboutDFIR – The Definitive Compendium Project aboutdfir.com

Four in five Apache Struts 2 downloads are for versions featuring critical flaw  Security vendor Sonatype believes developers are failing to address the critical remote code execution (RCE) vulnerability in the Apache Struts 2 framework, based on recent downloads of the code. The vulnerability, tracked as CVE-2023-50164, is rated 9.8 out of 10 in terms of CVSS severity. […]


The post InfoSec News Nuggets 12/22/2023 appeared first on AboutDFIR - The Definitive Compendium Project.

aboutdfir address apache apache struts apache struts 2 code code execution critical critical flaw cve cve-2023-50164 developers downloads flaw framework ftc infosec infosec news infosec news nuggets news nuggets nuggets rce remote code remote code execution rite aid security security vendor sonatype struts struts 2 terms vendor vulnerability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Officer Hospital Laguna Beach

@ Allied Universal | Laguna Beach, CA, United States

Sr. Cloud DevSecOps Engineer

@ Oracle | NOIDA, UTTAR PRADESH, India

Cloud Operations Security Engineer

@ Elekta | Crawley - Cornerstone

Cybersecurity – Senior Information System Security Manager (ISSM)

@ Boeing | USA - Seal Beach, CA

Engineering -- Tech Risk -- Security Architecture -- VP -- Dallas

@ Goldman Sachs | Dallas, Texas, United States