Critical H2 database vulnerability similar to Log4Shell disclosed

clock • 3 min read
Critical H2 database vulnerability similar to Log4Shell disclosed
Image:

Critical H2 database vulnerability similar to Log4Shell disclosed

All H2 users should upgrade to the newest version 2.0.206 which is patched for the flaw

Researchers at software company JFrog have uncovered a new vulnerability affecting H2 database consoles that could allow threat actors to achieve remote code execution (RCE) in applications and sof...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Oracle's controversial stewardship of Java: The good and the bad

Open Source

Oracle is doing a good job in keeping Java relevant. But that's pretty much where it ends, says Azul CTO

clock 15 February 2024 • 5 min read
Two command injection bugs threaten Fortinet's FortiSIEM

Threats and Risks

Affect versions from October 2022 to 2024

clock 07 February 2024 • 2 min read
Microsoft's calm start to 2024: January Patch Tuesday addresses 49 bugs

Threats and Risks

None of them is currently under active exploitation or publicly disclosed

clock 10 January 2024 • 3 min read
Most read
01

Cabinet Office terminates £9m Microsoft deal

16 February 2024 • 2 min read
04

Cisco cuts more than 4,000 jobs

15 February 2024 • 3 min read
05

Microsoft announces critical zero-day Exchange bug

16 February 2024 • 1 min read

Sign up to our newsletter

The best news, stories, features and photos from the day in one perfectly formed email.

More on Threats and Risks

Microsoft exposes state-backed hackers using AI tools for espionage

Microsoft exposes state-backed hackers using AI tools for espionage

Hackers linked to Russian military intelligence have been using LLMs to delve into satellite communication protocols relevant to military operations in Ukraine

clock 15 February 2024 • 3 min read
France uncovers massive Russian disinformation campaign

France uncovers massive Russian disinformation campaign

Dubbed 'Portal Kombat'

Vikki Davies
clock 14 February 2024 • 2 min read
Microsoft's Patch Tuesday fixes two actively exploited vulnerabilities

Microsoft's Patch Tuesday fixes two actively exploited vulnerabilities

73 bugs fixed in February update

John Leonard
clock 14 February 2024 • 2 min read