Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2023-44487

Disclosure Date: October 10, 2023 (last updated June 28, 2024)
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Attacker Value
Unknown

CVE-2023-36437

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
Azure DevOps Server Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2022-45306

Disclosure Date: November 29, 2022 (last updated October 08, 2023)
Insecure permissions in Chocolatey Azure-Pipelines-Agent package v2.211.1 and below grants all users in the Authenticated Users group write privileges for the subfolder C:\agent and all files located in that folder.