Remote Code Execution in New Relic Ruby Agent
A critical remote code execution vulnerability in New Relic Ruby Agent's JSON marshaller that allows attackers to execute arbitrary code through unsafe deserialization of untrusted data.
A collection of in-depth vulnerability advisories and security research reports published by 0daysec, including technical writeups, CVE analyses, exploitation techniques, and remediation guidance.
A critical command injection vulnerability discovered in Headlamp's code signing script that could allow arbitrary command execution during the build process.
A critical remote code execution vulnerability in New Relic Ruby Agent's JSON marshaller that allows attackers to execute arbitrary code through unsafe deserialization of untrusted data.
A critical security vulnerability discovered in Netflix Spectator's IpcServletFilter that allows HTTP response splitting attacks through header injection.
A medium severity integer underflow vulnerability in Valkey's networking code that could lead to memory corruption and denial of service.
A critical vulnerability in the Example Cloud API that allows attackers to execute arbitrary code through specially crafted requests.
Dedicated to discovering and documenting security vulnerabilities across various platforms and applications. Our research aids in creating more secure systems for everyone.
Identifying new security vulnerabilities in software systems through systematic testing and analysis.
Following ethical security practices by reporting vulnerabilities to vendors before public disclosure.
Creating detailed reports with proof-of-concepts to help understand and address security issues.