CVSS10
#RediShell: Redis/Valkey Get ‘Perfect 10’ Critical RCE Vuln
Richi Jennings | | CVE-2025-49844, CVSS10, Lua, open source, open source applications, open source code, open source components, Open-Source Databases, open-source-software, rce, RCE (Remote Code Execution), redis, Redis servers vulnerability, Redis vulnerabilities, RediShell, Remote Code Execution, Remote Code Execution (RCE), remote code execution attack, Remote Code Execution Exploit, remote code execution flaw, Remote Code Execution Vulnerabilities, remote code execution vulnerability, SB Blogwatch, Valkey
Redis hell: CVSS 10.0 vulnerability in ubiquitous cloud storage layer. PATCH NOW ...
Security Boulevard
GitLab ‘Perfect 10’ Bug Gets a CISA Warning: PATCH NOW
Richi Jennings | | cisa, CISA Advisories, CISA Advisory, CISA Alert, CISA KEV, cisa known exploited vulnerabilities, cisa known exploited vulnerabilities catalog, CISA Threat Update, CISA warning, CISA.gov, CVE-2023-7028, CVSS10, Cybersecurity Infrastructure Security Administration, GitLab, GitLab Community Edition, GitLab CVE-2023-7028 CVE-2023-5356, GitLab Enterprise Edition, GitLab Patches, GitLab Security, GitLab Vulnerability, NSA/CISA, Password reset, Password reset protection, SB Blogwatch, software supply chain, software supply chain attack, software supply chain attacks, software supply chain risk, Software Supply Chain risks, Supply-Chain Insecurity
Password reset FAILURE: The U.S. Cybersecurity and Infrastructure Security Agency warns GitLab users of a 100-day-old, maximum severity vulnerability ...
Security Boulevard
Atlassian Bug now a Perfect 10: Riot of Ransomware Raids
Richi Jennings | | atlassian, Atlassian Confluence, cerber, Confluence, CVE-2023-22518, CVSS10, Java, Ransomware, SB Blogwatch, vulnerability
Step #1: Get it off the Internet—Confluence Data Center and Server on-prem products perfectly pwned, so patch ...
Security Boulevard
Detecting Zerologon (CVE-2020-1472) with Zeek
Yacin Nadji | | ciphertext, Corelight Labs, CVE-2020-1472, CVSS10, LateralMovement, Microsoft, Netlogon, Open Source Community, python, Secura, Sigma, Splunk, vulnerability, Windows Server, Zeek, ZeroLogon
By Yacin Nadji, Corelight Security Researcher CVE-2020-1472 aka Zerologon, disclosed by Tom Tervoort of Secura, is an illustrative case study of how a small implementation mistake in cryptographic routines cascades into a ...

