Quotidien Shaarli
December 14, 2022
Google releases vulnerability scanner for open-source software, backed by community-editable database

Google announces the launch of OSV-Scanner, a free, open-source vulnerability scanner that's designed to identify software exploits.
Microsoft is working to address a new known issue affecting apps using ODBC database connections after installing the November 2022 Patch Tuesday Windows updates.
State-sponsored attackers actively exploiting RCE in Citrix devices, patch ASAP! (CVE-2022-27518) - Help Net Security

An unauthenticated RCE flaw (CVE-2022-27518) is being leveraged by APT5 to compromise Citrix ADC deployments.