Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters

Argo CD, a widely used tool for deploying software to Kubernetes, has an unpatched flaw in its repo-server component that lets an unauthenticated attacker run code, provided they can reach the component’s internal network port.

Synacktiv, which found … Continue reading Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters

Posted in Uncategorized

Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands

Two flaws in Cursor, an AI code editor, could let a single, ordinary-looking prompt break out of the editor’s safety sandbox and run any command on a developer’s computer. There is no click to fall for and no approval box to ignore.

Cato AI Labs … Continue reading Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands

Posted in Uncategorized

Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts

A recently disclosed critical security flaw impacting Progress Kemp LoadMaster is seeing active exploitation attempts, according to an advisory from eSentire’s Threat Response Unit (TRU).

The Canadian cybersecurity company said it identified exploitat… Continue reading Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts

Posted in Uncategorized