Among the vulnerability news this week, the most concerned is the warning from the application vulnerability detection industry that there has been an attack on the XStream CVE-2021-39144 vulnerability in the library. In the vulnerability patch news, Jenkins, Fortinet and Veeam Bug fixes and disclosures are worth noting. In addition, we would like to remind you that, in addition to the above-mentioned XStream vulnerabilities, there are four known vulnerabilities in the past two years regarding the latest exploits. Although the Information Security News has not mentioned this week, they have all been confirmed recently. Lockdown exploits, also of priority, include: Plex Media Server (CVE-2020-5741), Zoho ManageEngine (CVE-2022-28810), Apache Spark (CVE-2022-33891), and Teclib GLPI (CVE-2022- 35914) vulnerability.
![[Information Security Weekly]March 6th to March 10th, 2023 1 zi an zhou bao 20230313](https://mlmanfsmq3vm.i.optimole.com/w:960/h:420/q:mauto/rt:fill/g:sm/f:avif/https://urbantechstory.com/wp-content/uploads/2023/03/zi_an_zhou_bao_20230313.jpg)