CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2024-0748

    Last Modified: 11 Jun 2025

    A compromised content process could have updated the document URI. This could have allowed an attacker to set an arbitrary URI in the address bar or history. This vulnerability affects Firefox < 122.

    Published: 22 Jan 2024
    4.3
    Medium

    CVE-2024-0749

    Last Modified: 22 May 2025

    A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firefox < 122 and Thunderbird < 115.7.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2024-0750

    Last Modified: 20 Jun 2025

    A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2024-0751

    Last Modified: 20 Jun 2025

    A malicious devtools extension could have been used to escalate privileges. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.

    Published: 22 Jan 2024
    6.5
    Medium

    CVE-2024-0754

    Last Modified: 22 May 2025

    Some WASM source files could have caused a crash when loaded in devtools. This vulnerability affects Firefox < 122.

    Published: 22 Jan 2024
    5.3
    Medium

    CVE-2023-47747

    Last Modified: 13 Feb 2025

    IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.1, 10.5, and 11.1 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 272646.

    Published: 22 Jan 2024
    5.3
    Medium

    CVE-2023-6447

    Last Modified: 17 Jun 2025

    The EventPrime WordPress plugin before 3.3.6 lacks authentication and authorization, allowing unauthenticated visitors to access private and password protected Events by guessing their numeric id/event name.

    Published: 22 Jan 2024
    7.2
    High

    CVE-2023-7082

    Last Modified: 20 Jun 2025

    The Import any XML or CSV File to WordPress plugin before 3.7.3 accepts all zip files and automatically extracts the zip file into a publicly accessible directory without sufficiently validating the extracted file type. This may allows high privilege users such as administrator to upload an executable file type leading to remote code execution.

    Published: 22 Jan 2024
    4.8
    Medium

    CVE-2023-6626

    Last Modified: 30 May 2025

    The Product Enquiry for WooCommerce WordPress plugin before 3.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 22 Jan 2024
    4.8
    Medium

    CVE-2023-6456

    Last Modified: 11 Jun 2025

    The WP Review Slider WordPress plugin before 13.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 22 Jan 2024
    4.8
    Medium

    CVE-2023-6290

    Last Modified: 21 Nov 2024

    The SEOPress WordPress plugin before 7.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 22 Jan 2024
    6.1
    Medium

    CVE-2023-7194

    Last Modified: 30 May 2025

    The Meris WordPress theme through 1.1.2 does not sanitise and escape some parameters before outputting them back in the page, leading to Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 22 Jan 2024
    4.3
    Medium

    CVE-2023-6384

    Last Modified: 11 Jun 2025

    The WP User Profile Avatar WordPress plugin before 1.0.1 does not properly check for authorisation, allowing authors to delete and update arbitrary avatar

    Published: 22 Jan 2024
    4.3
    Medium

    CVE-2023-6625

    Last Modified: 20 Jun 2025

    The Product Enquiry for WooCommerce WordPress plugin before 3.1 does not have a CSRF check in place when deleting inquiries, which could allow attackers to make a logged in admin delete them via a CSRF attack

    Published: 22 Jan 2024
    6.1
    Medium

    CVE-2023-7170

    Last Modified: 30 May 2025

    The EventON-RSVP WordPress plugin before 2.9.5 does not sanitise and escape some parameters before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 22 Jan 2024
    5.9
    Medium

    CVE-2023-45193

    Last Modified: 13 Feb 2025

    IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of service when a specially crafted cursor is used. IBM X-Force ID: 268759.

    Published: 22 Jan 2024
    6.5
    Medium

    CVE-2023-50308

    Last Modified: 10 Jun 2025

    IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 under certain circumstances could allow an authenticated user to the database to cause a denial of service when a statement is run on columnar tables. IBM X-Force ID: 273393.

    Published: 22 Jan 2024
    5.3
    Medium

    CVE-2023-47746

    Last Modified: 13 Feb 2025

    IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 272644.

    Published: 22 Jan 2024
    7.8
    High

    CVE-2022-45792

    Last Modified: 17 Jun 2025

    Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in user.

    Published: 22 Jan 2024
    8.6
    High

    CVE-2022-45790

    Last Modified: 21 Nov 2024

    The Omron FINS protocol has an authenticated feature to prevent access to memory regions. Authentication is susceptible to bruteforce attack, which may allow an adversary to gain access to protected memory. This access can allow overwrite of values including programmed logic.

    Published: 22 Jan 2024
    4.9
    Medium

    CVE-2023-44395

    Last Modified: 21 Nov 2024

    Autolab is a course management service that enables instructors to offer autograded programming assignments to their students over the Web. Path traversal vulnerabilities were discovered in Autolab's assessment functionality in versions of Autolab prior to 2.12.0, whereby instructors can perform arbitrary file reads. Version 2.12.0 contains a patch. There are no feasible workarounds for this issue.

    Published: 22 Jan 2024
    5.5
    Medium

    CVE-2024-0430

    Last Modified: 21 Nov 2024

    IObit Malware Fighter v11.0.0.1274 is vulnerable to a Denial of Service vulnerability by triggering the 0x8001E00C IOCTL code of the ImfHpRegFilter.sys driver.

    Published: 22 Jan 2024
    6.1
    Medium

    CVE-2024-0606

    Last Modified: 20 Jun 2025

    An attacker could execute unauthorized script on a legitimate site through UXSS using window.open() by opening a javascript URI leading to unauthorized actions within the user's loaded webpage. This vulnerability affects Focus for iOS < 122.

    Published: 22 Jan 2024
    7.5
    High

    CVE-2024-0605

    Last Modified: 20 Jun 2025

    Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sites in urlbar. This bypasses security measures, potentially leading to arbitrary code execution or unauthorized actions within the user's loaded webpage. This vulnerability affects Focus for iOS < 122.

    Published: 22 Jan 2024
    4.4
    Medium

    CVE-2020-36772

    Last Modified: 30 May 2025

    CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2024-0204

    Last Modified: 30 May 2025

    Authentication bypass in Fortra's GoAnywhere MFT prior to 7.4.1 allows an unauthorized user to create an admin user via the administration portal.

    Published: 22 Jan 2024
    7.8
    High

    CVE-2020-36771

    Last Modified: 20 Jun 2025

    CloudLinux CageFS 7.1.1-1 or below passes the authentication token as a command line argument. In some configurations this allows local users to view the authentication token via the process list and gain code execution as another user.

    Published: 22 Jan 2024
    6.3
    Medium

    CVE-2024-0784

    Last Modified: 30 May 2025

    A vulnerability was found in hongmaple octopus 1.0. It has been classified as critical. Affected is an unknown function of the file /system/role/list. The manipulation of the argument dataScope leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The identifier of this vulnerability is VDB-251700.

    Published: 22 Jan 2024
    6.3
    Medium

    CVE-2024-0783

    Last Modified: 30 May 2025

    A vulnerability was found in Project Worlds Online Admission System 1.0 and classified as critical. This issue affects some unknown processing of the file documents.php. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-251699.

    Published: 22 Jan 2024
    3.5
    Low

    CVE-2024-0782

    Last Modified: 21 Nov 2024

    A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. This vulnerability affects unknown code of the file pass-profile.php. The manipulation of the argument First Name/Last Name/User Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-251698 is the identifier assigned to this vulnerability.

    Published: 22 Jan 2024
    3.5
    Low

    CVE-2024-0781

    Last Modified: 17 Jun 2025

    A vulnerability, which was classified as problematic, was found in CodeAstro Internet Banking System 1.0. This affects an unknown part of the file pages_client_signup.php. The manipulation of the argument Client Full Name with the input <meta http-equiv="refresh" content="0; url=https://vuldb.com" /> leads to open redirect. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-251697 was assigned to this vulnerability.

    Published: 22 Jan 2024
    8
    High

    CVE-2024-0778

    Last Modified: 30 May 2025

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in Uniview ISC 2500-S up to 20210930. Affected by this issue is the function setNatConfig of the file /Interface/DevManage/VM.php. The manipulation of the argument natAddress/natPort/natServerPort leads to os command injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-251696. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: Vendor was contacted early and confirmed immediately that the product is end-of-life. It should be retired and replaced.

    Published: 22 Jan 2024
    6.1
    Medium

    CVE-2024-22113

    Last Modified: 20 Jun 2025

    Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary websites and conduct phishing attacks via a specially crafted URL.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2021-42141

    Last Modified: 20 Jun 2025

    An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different epoch numbers in the packets Client_Hello, Client_key_exchange, and Change_cipher_spec, which may cause denial of service.

    Published: 22 Jan 2024
    7.5
    High

    CVE-2023-52340

    Last Modified: 4 Nov 2025

    The IPv6 implementation in the Linux kernel before 6.3 has a net/ipv6/route.c max_size threshold that can be consumed easily, e.g., leading to a denial of service (network is unreachable errors) when IPv6 packets are sent in a loop via a raw socket.

    Published: 22 Jan 2024
    5.5
    Medium

    CVE-2024-0727

    Last Modified: 12 May 2026

    Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack Impact summary: Applications loading files in the PKCS12 format from untrusted sources might terminate abruptly. A file in PKCS12 format can contain certificates and keys and may come from an untrusted source. The PKCS12 specification allows certain fields to be NULL, but OpenSSL does not correctly check for this case. This can lead to a NULL pointer dereference that results in OpenSSL crashing. If an application processes PKCS12 files from an untrusted source using the OpenSSL APIs then that application will be vulnerable to this issue. OpenSSL APIs that are vulnerable to this are: PKCS12_parse(), PKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes() and PKCS12_newpass(). We have also fixed a similar issue in SMIME_write_PKCS7(). However since this function is related to writing data we do not consider it security significant. The FIPS modules in 3.2, 3.1 and 3.0 are not affected by this issue.

    Published: 22 Jan 2024
    7.5
    High

    CVE-2024-22233

    Last Modified: 20 Jun 2025

    In Spring Framework versions 6.0.15 and 6.1.2, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Specifically, an application is vulnerable when all of the following are true: * the application uses Spring MVC * Spring Security 6.1.6+ or 6.2.1+ is on the classpath Typically, Spring Boot applications need the org.springframework.boot:spring-boot-starter-web and org.springframework.boot:spring-boot-starter-security dependencies to meet all conditions.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2024-23768

    Last Modified: 30 May 2025

    Dremio before 24.3.1 allows path traversal. An authenticated user who has no privileges on certain folders (and the files and datasets in these folders) can access these folders, files, and datasets. To be successful, the user must have access to the source and at least one folder in the source. Affected versions are: 24.0.0 through 24.3.0, 23.0.0 through 23.2.3, and 22.0.0 through 22.2.2. Fixed versions are: 24.3.1 and later, 23.2.4 and later, and 22.2.3 and later.

    Published: 22 Jan 2024
    7.8
    High

    CVE-2023-24135

    Last Modified: 21 Nov 2024

    Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a command injection vulnerability in the function formWriteFacMac. This vulnerability allows attackers to execute arbitrary commands via manipulation of the mac parameter.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2023-47352

    Last Modified: 30 May 2025

    Technicolor TC8715D devices have predictable default WPA2 security passwords. An attacker who scans for SSID and BSSID values may be able to predict these passwords.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2023-48118

    Last Modified: 20 Jun 2025

    SQL Injection vulnerability in Quest Analytics LLC IQCRM v.2023.9.5 allows a remote attacker to execute arbitrary code via a crafted request to the Common.svc WSDL page.

    Published: 22 Jan 2024
    7.5
    High

    CVE-2023-52354

    Last Modified: 17 Jun 2025

    chasquid before 1.13 allows SMTP smuggling because LF-terminated lines are accepted.

    Published: 22 Jan 2024
    5.5
    Medium

    CVE-2024-23770

    Last Modified: 30 May 2025

    darkhttpd through 1.15 allows local users to discover credentials (for --auth) by listing processes and their arguments.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2024-23771

    Last Modified: 30 May 2025

    darkhttpd before 1.15 uses strcmp (which is not constant time) to verify authentication, which makes it easier for remote attackers to bypass authentication via a timing side channel.

    Published: 22 Jan 2024
    7.5
    High

    CVE-2024-21484

    Last Modified: 21 Nov 2024

    Versions of the package jsrsasign before 11.0.0 are vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP decryption process. An attacker can decrypt ciphertexts by exploiting the Marvin security flaw. Exploiting this vulnerability requires the attacker to have access to a large number of ciphertexts encrypted with the same key. Workaround The vulnerability can be mitigated by finding and replacing RSA and RSAOAEP decryption with another crypto library.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2024-22895

    Last Modified: 5 Jun 2025

    DedeCMS 5.7.112 has a File Upload vulnerability via uploads/dede/module_upload.php.

    Published: 22 Jan 2024
    6.5
    Medium

    CVE-2024-23206

    Last Modified: 2 Apr 2026

    An access issue was addressed with improved access restrictions. This issue is fixed in Safari 17.3, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. A maliciously crafted webpage may be able to fingerprint the user.

    Published: 22 Jan 2024
    8.8
    High

    CVE-2024-23750

    Last Modified: 20 Jun 2025

    MetaGPT through 0.6.4 allows the QaEngineer role to execute arbitrary code because RunCode.run_script() passes shell metacharacters to subprocess.Popen.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2024-23751

    Last Modified: 20 Jun 2025

    LlamaIndex (aka llama_index) through 0.9.34 allows SQL injection via the Text-to-SQL feature in NLSQLTableQueryEngine, SQLTableRetrieverQueryEngine, NLSQLRetriever, RetrieverQueryEngine, and PGVectorSQLQueryEngine. For example, an attacker might be able to delete this year's student records via "Drop the Students table" within English language input.

    Published: 22 Jan 2024
    9.8
    Critical

    CVE-2024-23752

    Last Modified: 30 May 2025

    GenerateSDFPipeline in synthetic_dataframe in PandasAI (aka pandas-ai) through 1.5.17 allows attackers to trigger the generation of arbitrary Python code that is executed by SDFCodeExecutor. An attacker can create a dataframe that provides an English language specification of this Python code. NOTE: the vendor previously attempted to restrict code execution in response to a separate issue, CVE-2023-39660.

    Published: 22 Jan 2024