Introducing AI agent: Get information about your infrastructure faster. Learn more >
Show posts tagged:
compliance

CVE-2024-55958 - Cross-site scripting (XSS) / missing input validation in CFEngine Enterprise Mission Portal

We are writing to inform you of a recently discovered security issue in the CFEngine Enterprise web UI, Mission Portal. The issue has been fixed in the recently released 3.21.6 and 3.24.1 versions. Prior versions (3.24.0, 3.21.5, and below) are affected. We have no indications of this issue being …

January 20, 2025

Inventory and remediate Red Hat Enterprise Linux with Security Technical Implementation Guides (STIGs)

Security Technical Implementation Guides (STIGs) are an excellent body of knowledge to leverage in securing your infrastructure. With the stig-rhel-7 module you can easily add inventory and remediation policy for RHEL 7 with CFEngine. Do note that as of March 2024 this module does not provide …

Posted by Craig Comstock
April 1, 2024