A critical authentication vulnerability has been discovered in JetBrains TeamCity, identified under the reference CVE-2024-27198. This flaw significantly compromises the security of servers using this continuous integration system.
A critical vulnerability identified as CVE-2024-23897 has recently been disclosed in Jenkins, an open-source automation server that is essential for Continuous Integration and Continuous Delivery (CI/CD).
CVE-2023-23397 is a critical privilege escalation vulnerability in Microsoft Outlook that allows for the exfiltration of NTLM authentication hashes via a specially crafted email. This flaw is exploited without any user interaction and raises significant security concerns for all versions of Outlook for Windows.