CVE Feed

    Dashboard / CVE

    5.9
    Medium

    CVE-2024-21491

    Last Modified: 9 May 2025

    Versions of the package svix before 1.17.0 are vulnerable to Authentication Bypass due to an issue in the verify function where signatures of different lengths are incorrectly compared. An attacker can bypass signature verification by providing a shorter signature that matches the beginning of the actual signature. **Note:** The attacker would need to know a victim uses the Rust library for verification,no easy way to automatically check that; and uses webhooks by a service that uses Svix, and then figure out a way to craft a malicious payload that will actually include all of the correct identifiers needed to trick the receivers to cause actual issues.

    Published: 13 Feb 2024
    8.3
    High

    CVE-2024-22024

    Last Modified: 31 Oct 2025

    An XML external entity or XXE vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x), Ivanti Policy Secure (9.x, 22.x) and ZTA gateways which allows an attacker to access certain restricted resources without authentication.

    Published: 13 Feb 2024
    4.3
    Medium

    CVE-2024-24741

    Last Modified: 21 Nov 2024

    SAP Master Data Governance for Material Data - versions 618, 619, 620, 621, 622, 800, 801, 802, 803, 804, does not perform necessary authorization check for an authenticated user, resulting in escalation of privileges. This could allow an attacker to read some sensitive information but no impact to integrity and availability.

    Published: 13 Feb 2024
    5.4
    Medium

    CVE-2024-22129

    Last Modified: 21 Nov 2024

    SAP Companion - version <3.1.38, has a URL with parameter that could be vulnerable to XSS attack. The attacker could send a malicious link to a user that would possibly allow an attacker to retrieve the sensitive information and cause minor impact on the integrity of the web application.

    Published: 13 Feb 2024
    4.3
    Medium

    CVE-2024-25643

    Last Modified: 21 Nov 2024

    The SAP Fiori app (My Overtime Request) - version 605, does not perform the necessary authorization checks for an authenticated user which may result in an escalation of privileges. It is possible to manipulate the URLs of data requests to access information that the user should not have access to. There is no impact on integrity and availability.

    Published: 13 Feb 2024
    5.8
    Medium

    CVE-2023-50358

    Last Modified: 10 Dec 2025

    An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.5.2645 build 20240116 and later QTS 4.5.4.2627 build 20231225 and later QTS 4.3.6.2665 build 20240131 and later QTS 4.3.4.2675 build 20240131 and later QTS 4.3.3.2644 build 20240131 and later QTS 4.2.6 build 20240131 and later QuTS hero h5.1.5.2647 build 20240118 and later QuTS hero h4.5.4.2626 build 20231225 and later QuTScloud c5.1.5.2651 and later

    Published: 13 Feb 2024
    7.4
    High

    CVE-2024-25642

    Last Modified: 8 May 2025

    Due to improper validation of certificate in SAP Cloud Connector - version 2.0, attacker can impersonate the genuine servers to interact with SCC breaking the mutual authentication. Hence, the attacker can intercept the request to view/modify sensitive information. There is no impact on the availability of the system.

    Published: 13 Feb 2024
    5.8
    Medium

    CVE-2023-47218

    Last Modified: 10 Dec 2025

    An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.5.2645 build 20240116 and later QuTS hero h5.1.5.2647 build 20240118 and later QuTScloud c5.1.5.2651 and later

    Published: 13 Feb 2024
    8.6
    High

    CVE-2024-24743

    Last Modified: 21 Nov 2024

    SAP NetWeaver AS Java (CAF - Guided Procedures) - version 7.50, allows an unauthenticated attacker to submit a malicious request with a crafted XML file over the network, which when parsed will enable him to access sensitive files and data but not modify them. There are expansion limits in place so that availability is not affected.

    Published: 13 Feb 2024
    4.1
    Medium

    CVE-2024-24742

    Last Modified: 21 Nov 2024

    SAP CRM WebClient UI - version S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, WEBCUIF 701, WEBCUIF 731, WEBCUIF 746, WEBCUIF 747, WEBCUIF 748, WEBCUIF 800, WEBCUIF 801, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. An attacker with low privileges can cause limited impact to integrity of the application data after successful exploitation. There is no impact on confidentiality and availability.

    Published: 13 Feb 2024
    5.3
    Medium

    CVE-2024-24740

    Last Modified: 9 May 2025

    SAP NetWeaver Application Server (ABAP) - versions KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, KERNEL 7.85, KERNEL 7.89, KERNEL 7.93, KERNEL 7.94, KRNL64UC 7.53, under certain conditions, allows an attacker to access information which could otherwise be restricted with low impact on confidentiality of the application.

    Published: 13 Feb 2024
    6.3
    Medium

    CVE-2024-24739

    Last Modified: 9 May 2025

    SAP Bank Account Management (BAM) allows an authenticated user with restricted access to use functions which can result in escalation of privileges with low impact on confidentiality, integrity and availability of the application.

    Published: 13 Feb 2024
    7.4
    High

    CVE-2024-22132

    Last Modified: 24 Apr 2025

    SAP IDES ECC-systems contain code that permits the execution of arbitrary program code of user's choice.An attacker can therefore control the behaviour of the system by executing malicious code which can potentially escalate privileges with low impact on confidentiality, integrity and availability of the system.

    Published: 13 Feb 2024
    9.1
    Critical

    CVE-2024-22131

    Last Modified: 21 Nov 2024

    In SAP ABA (Application Basis) - versions 700, 701, 702, 731, 740, 750, 751, 752, 75C, 75I, an attacker authenticated as a user with a remote execution authorization can use a vulnerable interface. This allows the attacker to use the interface to invoke an application function to perform actions which they would not normally be permitted to perform.  Depending on the function executed, the attack can read or modify any user/business data and can make the entire system unavailable.

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-22130

    Last Modified: 9 May 2025

    Print preview option in SAP CRM WebClient UI - versions S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, S4FND 108, WEBCUIF 700, WEBCUIF 701, WEBCUIF 730, WEBCUIF 731, WEBCUIF 746, WEBCUIF 747, WEBCUIF 748, WEBCUIF 800, WEBCUIF 801, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting vulnerability. An attacker with low privileges can cause limited impact to confidentiality and integrity of the appliaction data after successful exploitation.

    Published: 13 Feb 2024
    4.7
    Medium

    CVE-2024-22128

    Last Modified: 25 Feb 2026

    SAP NWBC for HTML - versions SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757, SAP_BASIS 700, SAP_BASIS 701, SAP_BASIS 702, SAP_BASIS 731, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. An unauthenticated attacker can inject malicious javascript to cause limited impact to confidentiality and integrity of the application data after successful exploitation.

    Published: 13 Feb 2024
    6.1
    Medium

    CVE-2024-22126

    Last Modified: 11 Feb 2025

    The User Admin application of SAP NetWeaver AS for Java - version 7.50, insufficiently validates and improperly encodes the incoming URL parameters before including them into the redirect URL. This results in Cross-Site Scripting (XSS) vulnerability, leading to a high impact on confidentiality and mild impact on integrity and availability.

    Published: 13 Feb 2024
    7.4
    High

    CVE-2023-20577

    Last Modified: 4 Sept 2026

    A heap overflow in SMM module may allow an attacker with access to a second vulnerability that enables writing to SPI flash, potentially resulting in arbitrary code execution.

    Published: 13 Feb 2024
    7.7
    High

    CVE-2023-20576

    Last Modified: 4 Sept 2026

    Insufficient Verification of Data Authenticity in AGESA™ may allow an attacker to update SPI ROM data potentially resulting in denial of service or privilege escalation.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-21404

    Last Modified: 10 Aug 2026

    .NET Denial of Service Vulnerability

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-21386

    Last Modified: 10 Aug 2026

    .NET Denial of Service Vulnerability

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-4408

    Last Modified: 14 Mar 2025

    The DNS message parsing code in `named` includes a section whose computational complexity is overly high. It does not cause problems for typical DNS traffic, but crafted queries and responses may cause excessive CPU load on the affected `named` instance by exploiting this flaw. This issue affects both authoritative servers and recursive resolvers. This issue affects BIND 9 versions 9.0.0 through 9.16.45, 9.18.0 through 9.18.21, 9.19.0 through 9.19.19, 9.9.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

    Published: 13 Feb 2024
    6.1
    Medium

    CVE-2023-48432

    Last Modified: 25 Mar 2025

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. XSS, with resultant session stealing, can occur via JavaScript code in a link (for a webmail redirection endpoint) within en email message, e.g., if a victim clicks on that link within Zimbra webmail.

    Published: 13 Feb 2024
    9.1
    Critical

    CVE-2022-48623

    Last Modified: 21 Nov 2024

    The Cpanel::JSON::XS package before 4.33 for Perl performs out-of-bounds accesses in a way that allows attackers to obtain sensitive information or cause a denial of service.

    Published: 13 Feb 2024
    6
    Medium

    CVE-2023-20579

    Last Modified: 14 Mar 2025

    Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability.

    Published: 13 Feb 2024
    9.8
    Critical

    CVE-2024-22923

    Last Modified: 13 Mar 2025

    SQL injection vulnerability in adv radius v.2.2.5 allows a local attacker to execute arbitrary code via a crafted script.

    Published: 13 Feb 2024
    9.8
    Critical

    CVE-2024-24142

    Last Modified: 9 May 2025

    Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-24814

    Last Modified: 10 Apr 2025

    mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. In affected versions missing input validation on mod_auth_openidc_session_chunks cookie value makes the server vulnerable to a denial of service (DoS) attack. An internal security audit has been conducted and the reviewers found that if they manipulated the value of the mod_auth_openidc_session_chunks cookie to a very large integer, like 99999999, the server struggles with the request for a long time and finally gets back with a 500 error. Making a few requests of this kind caused our server to become unresponsive. Attackers can craft requests that would make the server work very hard (and possibly become unresponsive) and/or crash with minimal effort. This issue has been addressed in version 2.4.15.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 13 Feb 2024
    6.5
    Medium

    CVE-2023-26562

    Last Modified: 21 Nov 2024

    In Zimbra Collaboration (ZCS) 8.8.15 and 9.0, a closed account (with 2FA and generated passwords) can send e-mail messages when configured for Imap/smtp.

    Published: 13 Feb 2024
    7.3
    High

    CVE-2023-38960

    Last Modified: 7 May 2025

    Insecure Permissions issue in Raiden Professional Server RaidenFTPD v.2.4 build 4005 allows a local attacker to gain privileges and execute arbitrary code via crafted executable running from the installation directory.

    Published: 13 Feb 2024
    9.8
    Critical

    CVE-2023-42374

    Last Modified: 24 Apr 2025

    An issue in mystenlabs Sui Blockchain before v.1.6.3 allow a remote attacker to execute arbitrary code and cause a denial of service via a crafted compressed script to the Sui node component.

    Published: 13 Feb 2024
    6.1
    Medium

    CVE-2023-45207

    Last Modified: 27 Mar 2025

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. An attacker can send a PDF document through mail that contains malicious JavaScript. While previewing this file in webmail in the Chrome browser, the stored XSS payload is executed. (This has been mitigated by sanitising the JavaScript code present in a PDF document.)

    Published: 13 Feb 2024
    6.1
    Medium

    CVE-2023-45206

    Last Modified: 7 May 2025

    An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15, 9.0, and 10.0. Through the help document endpoint in webmail, an attacker can inject JavaScript or HTML code that leads to cross-site scripting (XSS). (Adding an adequate message to avoid malicious code will mitigate this issue.)

    Published: 13 Feb 2024
    6.1
    Medium

    CVE-2023-50808

    Last Modified: 21 Nov 2024

    Zimbra Collaboration before Kepler 9.0.0 Patch 38 GA allows DOM-based JavaScript injection in the Modern UI.

    Published: 13 Feb 2024
    5.4
    Medium

    CVE-2023-52059

    Last Modified: 9 May 2025

    A cross-site scripting (XSS) vulnerability in Gestsup v3.2.46 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Description text field.

    Published: 13 Feb 2024
    4.3
    Medium

    CVE-2023-52060

    Last Modified: 13 Mar 2025

    A Cross-Site Request Forgery (CSRF) in Gestsup v3.2.46 allows attackers to arbitrarily edit user profile information via a crafted request.

    Published: 13 Feb 2024
    8.8
    High

    CVE-2023-52431

    Last Modified: 24 Apr 2025

    The Plack::Middleware::XSRFBlock package before 0.0.19 for Perl allows attackers to bypass a CSRF protection mechanism via an empty form value and an empty cookie (if signed cookies are disabled).

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-5517

    Last Modified: 13 Feb 2025

    A flaw in query-handling code can cause `named` to exit prematurely with an assertion failure when: - `nxdomain-redirect <domain>;` is configured, and - the resolver receives a PTR query for an RFC 1918 address that would normally result in an authoritative NXDOMAIN response. This issue affects BIND 9 versions 9.12.0 through 9.16.45, 9.18.0 through 9.18.21, 9.19.0 through 9.19.19, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

    Published: 13 Feb 2024
    5.3
    Medium

    CVE-2023-5680

    Last Modified: 17 Mar 2025

    If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache database node for this name can significantly impair query performance. This issue affects BIND 9 versions 9.11.3-S1 through 9.11.37-S1, 9.16.8-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-25407

    Last Modified: 8 May 2025

    SteVe v3.6.0 was discovered to use predictable transaction ID's when receiving a StartTransaction request. This vulnerability can allow attackers to cause a Denial of Service (DoS) by using the predicted transaction ID's to terminate other transactions.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-50387

    Last Modified: 4 Nov 2025

    Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.

    Published: 13 Feb 2024
    8
    High

    CVE-2024-1488

    Last Modified: 11 Nov 2025

    A vulnerability was found in Unbound due to incorrect default permissions, allowing any process outside the unbound group to modify the unbound runtime configuration. If a process can connect over localhost to port 8953, it can alter the configuration of unbound.service. This flaw allows an unprivileged attacker to manipulate a running instance, potentially altering forwarders, allowing them to track all queries forwarded by the local resolver, and, in some cases, disrupting resolving altogether.

    Published: 13 Feb 2024
    6.5
    Medium

    CVE-2023-49339

    Last Modified: 7 May 2025

    Ellucian Banner 9.17 allows Insecure Direct Object Reference (IDOR) via a modified bannerId to the /StudentSelfService/ssb/studentCard/retrieveData endpoint.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-5679

    Last Modified: 29 Mar 2025

    A bad interaction between DNS64 and serve-stale may cause `named` to crash with an assertion failure during recursive resolution, when both of these features are enabled. This issue affects BIND 9 versions 9.16.12 through 9.16.45, 9.18.0 through 9.18.21, 9.19.0 through 9.19.19, 9.16.12-S1 through 9.16.45-S1, and 9.18.11-S1 through 9.18.21-S1.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-6516

    Last Modified: 13 Feb 2025

    To keep its cache database efficient, `named` running as a recursive resolver occasionally attempts to clean up the database. It uses several methods, including some that are asynchronous: a small chunk of memory pointing to the cache element that can be cleaned up is first allocated and then queued for later processing. It was discovered that if the resolver is continuously processing query patterns triggering this type of cache-database maintenance, `named` may not be able to handle the cleanup events in a timely manner. This in turn enables the list of queued cleanup events to grow infinitely large over time, allowing the configured `max-cache-size` limit to be significantly exceeded. This issue affects BIND 9 versions 9.16.0 through 9.16.45 and 9.16.8-S1 through 9.16.45-S1.

    Published: 13 Feb 2024
    7.5
    High

    CVE-2023-50868

    Last Modified: 23 Dec 2025

    The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in a random subdomain attack, aka the "NSEC3" issue. The RFC 5155 specification implies that an algorithm must perform thousands of iterations of a hash function in certain situations.

    Published: 13 Feb 2024
    7.1
    High

    CVE-2023-20587

    Last Modified: 15 Apr 2026

    Improper Access Control in System Management Mode (SMM) may allow an attacker access to the SPI flash potentially leading to arbitrary code execution.

    Published: 13 Feb 2024
    5.5
    Medium

    CVE-2023-28018

    Last Modified: 13 Mar 2025

    HCL Connections is vulnerable to a denial of service, caused by improper validation on certain requests. Using a specially-crafted request an attacker could exploit this vulnerability to cause denial of service for affected users.

    Published: 12 Feb 2024
    5.5
    Medium

    CVE-2024-24826

    Last Modified: 21 Nov 2024

    Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.1. The vulnerable function, `QuickTimeVideo::NikonTagsDecoder`, was new in v0.28.0, so Exiv2 versions before v0.28 are _not_ affected. The out-of-bounds read is triggered when Exiv2 is used to read the metadata of a crafted video file. In most cases this out of bounds read will result in a crash. This bug is fixed in version v0.28.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 12 Feb 2024
    5.5
    Medium

    CVE-2024-25112

    Last Modified: 21 Nov 2024

    Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A denial-of-service was found in Exiv2 version v0.28.1: an unbounded recursion can cause Exiv2 to crash by exhausting the stack. The vulnerable function, `QuickTimeVideo::multipleEntriesDecoder`, was new in v0.28.0, so Exiv2 versions before v0.28 are _not_ affected. The denial-of-service is triggered when Exiv2 is used to read the metadata of a crafted video file. This bug is fixed in version v0.28.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 12 Feb 2024