CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2024-20976

    Last Modified: 4 Nov 2025

    Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

    Published: 16 Jan 2024
    4.9
    Medium

    CVE-2024-20981

    Last Modified: 20 Jun 2025

    Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

    Published: 16 Jan 2024
    6.5
    Medium

    CVE-2024-20985

    Last Modified: 20 Jun 2025

    Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affected are 8.0.35 and prior and 8.2.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

    Published: 16 Jan 2024
    7.8
    High

    CVE-2023-7206

    Last Modified: 21 Nov 2024

    In Horner Automation Cscape versions 9.90 SP10 and prior, local attackers are able to exploit this vulnerability if a user opens a malicious CSP file, which would result in execution of arbitrary code on affected installations of Cscape.

    Published: 15 Jan 2024
    8.4
    High

    CVE-2023-50729

    Last Modified: 17 Jun 2025

    Traccar is an open source GPS tracking system. Prior to 5.11, Traccar is affected by an unrestricted file upload vulnerability in File feature allows attackers to execute arbitrary code on the server. This vulnerability is more prevalent because Traccar is recommended to run web servers as root user. It is also more dangerous because it can write or overwrite files in arbitrary locations. Version 5.11 was published to fix this vulnerability.

    Published: 15 Jan 2024
    5.3
    Medium

    CVE-2024-22207

    Last Modified: 17 Jun 2025

    fastify-swagger-ui is a Fastify plugin for serving Swagger UI. Prior to 2.1.0, the default configuration of `@fastify/swagger-ui` without `baseDir` set will lead to all files in the module's directory being exposed via http routes served by the module. The vulnerability is fixed in v2.1.0. Setting the `baseDir` option can also work around this vulnerability.

    Published: 15 Jan 2024
    —
    Unknown

    CVE-2024-23338

    Last Modified: 28 Mar 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-53427. Reason: This candidate is a duplicate of CVE-2024-53427. Notes: All CVE users should reference CVE-2024-53427 instead of this candidate.

    Published: 15 Jan 2024
    4.8
    Medium

    CVE-2023-4925

    Last Modified: 11 Jun 2025

    The Easy Forms for Mailchimp WordPress plugin through 6.8.10 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

    Published: 15 Jan 2024
    8.1
    High

    CVE-2023-5905

    Last Modified: 20 Jun 2025

    The DeMomentSomTres WordPress Export Posts With Images WordPress plugin through 20220825 does not check authorization of requests to export the blog data, allowing any logged in user, such as subscribers to export the contents of the blog, including restricted and unpublished posts, as well as passwords of protected posts.

    Published: 15 Jan 2024
    4.3
    Medium

    CVE-2023-6066

    Last Modified: 9 Jan 2026

    The WP Custom Widget area WordPress plugin through 1.2.5 does not properly apply capability and nonce checks on any of its AJAX action callback functions, which could allow attackers with subscriber+ privilege to create, delete or modify menus on the site.

    Published: 15 Jan 2024
    6.1
    Medium

    CVE-2023-6050

    Last Modified: 3 Jun 2025

    The Estatik Real Estate Plugin WordPress plugin before 4.1.1 does not sanitise and escape various parameters and generated URLs before outputting them back in attributes, leading to Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 15 Jan 2024
    8.8
    High

    CVE-2023-6991

    Last Modified: 11 Jun 2025

    The JSM file_get_contents() Shortcode WordPress plugin before 2.7.1 does not validate one of its shortcode's parameters before making a request to it, which could allow users with contributor role and above to perform SSRF attacks.

    Published: 15 Jan 2024
    7.2
    High

    CVE-2023-6620

    Last Modified: 20 Jun 2025

    The POST SMTP Mailer WordPress plugin before 2.8.7 does not properly sanitise and escape several parameters before using them in SQL statements, leading to a SQL injection exploitable by high privilege users such as admin.

    Published: 15 Jan 2024
    4.8
    Medium

    CVE-2023-6163

    Last Modified: 9 Jun 2025

    The WP Crowdfunding WordPress plugin before 2.1.10 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 15 Jan 2024
    6.5
    Medium

    CVE-2023-6048

    Last Modified: 3 Jun 2025

    The Estatik Real Estate Plugin WordPress plugin before 4.1.1 does not prevent user with low privileges on the site, like subscribers, from setting any of the site's options to 1, which could be used to break sites and lead to DoS when certain options are reset

    Published: 15 Jan 2024
    9.8
    Critical

    CVE-2023-6623

    Last Modified: 11 Jun 2025

    The Essential Blocks WordPress plugin before 4.4.3 does not prevent unauthenticated attackers from overwriting local variables when rendering templates over the REST API, which may lead to Local File Inclusion attacks.

    Published: 15 Jan 2024
    4.3
    Medium

    CVE-2023-6843

    Last Modified: 3 Jun 2025

    The easy.jobs- Best Recruitment Plugin for Job Board Listing, Manager, Career Page for Elementor & Gutenberg WordPress plugin before 2.4.7 does not properly secure some of its AJAX actions, allowing any logged-in users to modify its settings.

    Published: 15 Jan 2024
    7.5
    High

    CVE-2023-6029

    Last Modified: 11 Jun 2025

    The EazyDocs WordPress plugin before 2.3.6 does not have authorization and CSRF checks when handling documents and does not ensure that they are documents from the plugin, allowing unauthenticated users to delete arbitrary posts, as well as add and delete documents/sections.

    Published: 15 Jan 2024
    9.8
    Critical

    CVE-2023-6049

    Last Modified: 3 Jun 2025

    The Estatik Real Estate Plugin WordPress plugin before 4.1.1 unserializes user input via some of its cookies, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget chain is present on the blog

    Published: 15 Jan 2024
    4.8
    Medium

    CVE-2023-6941

    Last Modified: 20 Jun 2025

    The Keap Official Opt-in Forms WordPress plugin through 1.0.11 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example, in multisite setup).

    Published: 15 Jan 2024
    7.8
    High

    CVE-2023-42137

    Last Modified: 17 Jun 2025

    PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow for command execution with high privileges by using malicious symlinks. The attacker must have shell access to the device in order to exploit this vulnerability.

    Published: 15 Jan 2024
    7.8
    High

    CVE-2023-42136

    Last Modified: 21 Nov 2024

    PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow the execution of arbitrary commands with system account privilege by shell injection starting with a specific word. The attacker must have shell access to the device in order to exploit this vulnerability.

    Published: 15 Jan 2024
    6.8
    Medium

    CVE-2023-42135

    Last Modified: 17 Jun 2025

    PAX A920Pro/A50 devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow local code execution via parameter injection by bypassing the input validation when flashing a specific partition. The attacker must have physical USB access to the device in order to exploit this vulnerability.

    Published: 15 Jan 2024
    6.8
    Medium

    CVE-2023-42134

    Last Modified: 17 Jun 2025

    PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.45_20230314 or earlier can allow the signed partition overwrite and subsequently local code execution via hidden command. The attacker must have physical USB access to the device in order to exploit this vulnerability.

    Published: 15 Jan 2024
    7.6
    High

    CVE-2023-4818

    Last Modified: 17 Jun 2025

    PAX A920 device allows to downgrade bootloader due to a bug in its version check. The signature is correctly checked and only bootloader signed by PAX can be used.  The attacker must have physical USB access to the device in order to exploit this vulnerability.

    Published: 15 Jan 2024
    4.7
    Medium

    CVE-2024-0558

    Last Modified: 11 Jun 2025

    A vulnerability has been found in DedeBIZ 6.3.0 and classified as critical. This vulnerability affects unknown code of the file /admin/makehtml_freelist_action.php. The manipulation of the argument startid leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-250726 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024
    2.4
    Low

    CVE-2024-0557

    Last Modified: 9 May 2025

    A vulnerability, which was classified as problematic, was found in DedeBIZ 6.3.0. This affects an unknown part of the component Website Copyright Setting. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250725 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024
    5.4
    Medium

    CVE-2024-0320

    Last Modified: 3 Jun 2025

    Cross-Site Scripting in FireEye Malware Analysis (AX) affecting version 9.0.3.936530. This vulnerability allows an attacker to send a specially crafted JavaScript payload in the application URL to retrieve the session details of a legitimate user.

    Published: 15 Jan 2024
    5.4
    Medium

    CVE-2024-0319

    Last Modified: 21 Nov 2024

    Open Redirect vulnerability in FireEye HXTool affecting version 4.6, the exploitation of which could allow an attacker to redirect a legitimate user to a malicious page by changing the 'redirect_uri' parameter.

    Published: 15 Jan 2024
    5.4
    Medium

    CVE-2024-0318

    Last Modified: 21 Nov 2024

    Cross-Site Scripting in FireEye HXTool affecting version 4.6. This vulnerability allows an attacker to store a specially crafted JavaScript payload in the 'Profile Name' and 'Hostname/IP' parameters that will be triggered when items are loaded.

    Published: 15 Jan 2024
    5.4
    Medium

    CVE-2024-0317

    Last Modified: 3 Jun 2025

    Cross-Site Scripting in FireEye EX, affecting version 9.0.3.936727. Exploitation of this vulnerability allows an attacker to send a specially crafted JavaScript payload via the 'type' and 's_f_name' parameters to an authenticated user to retrieve their session details.

    Published: 15 Jan 2024
    5.5
    Medium

    CVE-2024-20709

    Last Modified: 17 Jun 2025

    Acrobat Reader T5 (MSFT Edge) versions 120.0.2210.91 and earlier are affected by an Improper Input Validation vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 15 Jan 2024
    5.5
    Medium

    CVE-2024-20721

    Last Modified: 3 Jun 2025

    Acrobat Reader T5 (MSFT Edge) versions 120.0.2210.91 and earlier are affected by an Improper Input Validation vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 15 Jan 2024
    6.8
    Medium

    CVE-2024-0316

    Last Modified: 21 Nov 2024

    Improper cleanup vulnerability in exceptions thrown in FireEye Endpoint Security, affecting version 5.2.0.958244. This vulnerability could allow an attacker to send multiple request packets to the containment_notify/preview parameter, which could lead to a service outage.

    Published: 15 Jan 2024
    6.6
    Medium

    CVE-2024-0315

    Last Modified: 3 Jun 2025

    Remote file inclusion vulnerability in FireEye Central Management affecting version 9.1.1.956704. This vulnerability allows an attacker to upload a malicious PDF file to the system during the report creation process.

    Published: 15 Jan 2024
    5.4
    Medium

    CVE-2024-0314

    Last Modified: 3 Jun 2025

    XSS vulnerability in FireEye Central Management affecting version 9.1.1.956704, which could allow an attacker to modify special HTML elements in the application and cause a reflected XSS, leading to a session hijacking.

    Published: 15 Jan 2024
    6.3
    Medium

    CVE-2023-5253

    Last Modified: 17 Jun 2025

    A missing authentication check in the WebSocket channel used for the Check Point IoT integration in Nozomi Networks Guardian and CMC, may allow an unauthenticated attacker to obtain assets data without authentication. Malicious unauthenticated users with knowledge on the underlying system may be able to extract limited asset information.

    Published: 15 Jan 2024
    9.8
    Critical

    CVE-2023-46226

    Last Modified: 20 Jun 2025

    Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 1.0.0 through 1.2.2. Users are recommended to upgrade to version 1.3.0, which fixes the issue.

    Published: 15 Jan 2024
    4.6
    Medium

    CVE-2024-22028

    Last Modified: 3 Jun 2025

    Insufficient technical documentation issue exists in thermal camera TMC series all firmware versions. The user of the affected product is not aware of the internally saved data. By accessing the affected product physically, an attacker may retrieve the internal data.

    Published: 15 Jan 2024
    9.8
    Critical

    CVE-2024-0552

    Last Modified: 17 Mar 2026

    Intumit inc. SmartRobot's web framwork has a remote code execution vulnerability. An unauthorized remote attacker can exploit this vulnerability to execute arbitrary commands on the remote server.

    Published: 15 Jan 2024
    7.5
    High

    CVE-2023-48383

    Last Modified: 17 Jun 2025

    NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and download arbitrary system files.

    Published: 15 Jan 2024
    5.3
    Medium

    CVE-2024-0548

    Last Modified: 21 Nov 2024

    A vulnerability was found in FreeFloat FTP Server 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the component SIZE Command Handler. The manipulation leads to denial of service. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-250718 is the identifier assigned to this vulnerability.

    Published: 15 Jan 2024
    5.3
    Medium

    CVE-2024-0547

    Last Modified: 21 Nov 2024

    A vulnerability has been found in Ability FTP Server 2.34 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component APPE Command Handler. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250717 was assigned to this vulnerability.

    Published: 15 Jan 2024
    5.3
    Medium

    CVE-2024-0546

    Last Modified: 3 Jun 2025

    A vulnerability, which was classified as problematic, has been found in EasyFTP 1.7.0. This issue affects some unknown processing of the component LIST Command Handler. The manipulation leads to denial of service. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250715.

    Published: 15 Jan 2024
    6.9
    Medium

    CVE-2024-0545

    Last Modified: 21 Apr 2025

    A vulnerability classified as problematic was found in CodeCanyon RISE Ultimate Project Manager 3.5.3. This vulnerability affects unknown code of the file /index.php/signin. The manipulation of the argument redirect with the input http://evil.com leads to open redirect. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 15 Jan 2024
    6.3
    Medium

    CVE-2024-0543

    Last Modified: 17 Jun 2025

    A vulnerability classified as critical has been found in CodeAstro Real Estate Management System up to 1.0. This affects an unknown part of the file propertydetail.php. The manipulation of the argument pid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250713 was assigned to this vulnerability.

    Published: 15 Jan 2024
    8.8
    High

    CVE-2024-0542

    Last Modified: 9 Jun 2025

    A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been rated as critical. Affected by this issue is the function formWifiMacFilterGet of the component httpd. The manipulation of the argument index leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-250712. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024
    8.8
    High

    CVE-2024-0541

    Last Modified: 12 May 2025

    A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been declared as critical. Affected by this vulnerability is the function formAddSysLogRule of the component httpd. The manipulation of the argument sysRulenEn leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250711. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024
    6.3
    Medium

    CVE-2024-0540

    Last Modified: 3 Jun 2025

    A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been classified as critical. Affected is the function formOfflineSet of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-250710 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024
    8.8
    High

    CVE-2024-0539

    Last Modified: 3 Jun 2025

    A vulnerability was found in Tenda W9 1.0.0.7(4456) and classified as critical. This issue affects the function formQosManage_user of the component httpd. The manipulation of the argument ssidIndex leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250709 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 15 Jan 2024