CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2021-40367

    Last Modified: 17 Jun 2025

    A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation of user-supplied data when parsing DICOM files. This could result in an out-of-bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-15097)

    Published: 4 Jan 2024
    7.8
    High

    CVE-2021-45465

    Last Modified: 3 Jun 2025

    A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation of user-supplied data when parsing BMP files. This could result in a write-what-where condition and an attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-15696)

    Published: 4 Jan 2024
    7.8
    High

    CVE-2021-42028

    Last Modified: 17 Jun 2025

    A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation of user-supplied data when parsing BMP files. This could result in an out-of-bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14860)

    Published: 4 Jan 2024
    4
    Medium

    CVE-2023-6992

    Last Modified: 21 Nov 2024

    Cloudflare version of zlib library was found to be vulnerable to memory corruption issues affecting the deflation algorithm implementation (deflate.c). The issues resulted from improper input validation and heap-based buffer overflow. A local attacker could exploit the problem during compression using a crafted malicious file potentially leading to denial of service of the software. Patches: The issue has been patched in commit 8352d10 https://github.com/cloudflare/zlib/commit/8352d108c05db1bdc5ac3bdf834dad641694c13c . The upstream repository is not affected.

    Published: 4 Jan 2024
    4.5
    Medium

    CVE-2022-3864

    Last Modified: 21 Nov 2024

    A vulnerability exists in the Relion update package signature validation. A tampered update package could cause the IED to restart. After restart the device is back to normal operation. An attacker could exploit the vulnerability by first gaining access to the system with security privileges and attempt to update the IED with a malicious update package. Successful exploitation of this vulnerability will cause the IED to restart, causing a temporary Denial of Service.

    Published: 4 Jan 2024
    6.4
    Medium

    CVE-2023-7044

    Last Modified: 8 Apr 2026

    The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom ID in all versions up to, and including, 5.9.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor access and higher to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 4 Jan 2024
    7.5
    High

    CVE-2022-2081

    Last Modified: 22 May 2025

    A vulnerability exists in the HCI Modbus TCP function included in the product versions listed above. If the HCI Modbus TCP is enabled and configured, an attacker could exploit the vulnerability by sending a specially crafted message to the RTU500 in a high rate, causing the targeted RTU500 CMU to reboot. The vulnerability is caused by a lack of flood control which eventually if exploited causes an internal stack overflow in the HCI Modbus TCP function.

    Published: 4 Jan 2024
    6.6
    Medium

    CVE-2023-41784

    Last Modified: 3 Jun 2025

    Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro

    Published: 4 Jan 2024
    5.4
    Medium

    CVE-2023-6738

    Last Modified: 8 Apr 2026

    The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pagelayer_header_code', 'pagelayer_body_open_code', and 'pagelayer_footer_code' meta fields in all versions up to, and including, 1.7.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This appears to be a reintroduction of a vulnerability patched in version 1.7.7.

    Published: 4 Jan 2024
    6.5
    Medium

    CVE-2023-6733

    Last Modified: 8 Apr 2026

    The WP-Members Membership Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.8 via the wpmem_field shortcode. This makes it possible for authenticated attackers, with contributor access and above, to extract sensitive data including user emails, password hashes, usernames, and more.

    Published: 4 Jan 2024
    4.4
    Medium

    CVE-2023-6498

    Last Modified: 8 Apr 2026

    The Complianz – GDPR/CCPA Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to and including 6.5.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.

    Published: 4 Jan 2024
    4
    Medium

    CVE-2024-20809

    Last Modified: 17 Jun 2025

    Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.

    Published: 4 Jan 2024
    4
    Medium

    CVE-2024-20808

    Last Modified: 17 Jun 2025

    Improper access control vulnerability in Nearby device scanning prior version 11.1.14.7 allows local attacker to access data.

    Published: 4 Jan 2024
    3.3
    Low

    CVE-2024-20807

    Last Modified: 21 Nov 2024

    Implicit intent hijacking vulnerability in Samsung Email prior to version 6.1.90.16 allows local attacker to get sensitive information.

    Published: 4 Jan 2024
    6.2
    Medium

    CVE-2024-20806

    Last Modified: 17 Jun 2025

    Improper access control in Notification service prior to SMR Jan-2024 Release 1 allows local attacker to access notification data.

    Published: 4 Jan 2024
    3.3
    Low

    CVE-2024-20805

    Last Modified: 3 Jun 2025

    Path traversal vulnerability in ZipCompressor of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.

    Published: 4 Jan 2024
    4
    Medium

    CVE-2024-20804

    Last Modified: 17 Apr 2025

    Path traversal vulnerability in FileUriConverter of MyFiles prior to SMR Jan-2024 Release 1 in Android 11 and Android 12, and version 14.5.00.21 in Android 13 allows local attackers to write arbitrary file.

    Published: 4 Jan 2024
    6.8
    Medium

    CVE-2024-20803

    Last Modified: 21 Nov 2024

    Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing process without user interaction.

    Published: 4 Jan 2024
    4.6
    Medium

    CVE-2024-20802

    Last Modified: 12 May 2025

    Improper access control vulnerability in Samsung DeX prior to SMR Jan-2024 Release 1 allows owner to access other users' notification in a multi-user environment.

    Published: 4 Jan 2024
    7.5
    High

    CVE-2023-6596

    Last Modified: 15 Apr 2026

    An incomplete fix was shipped for the Rapid Reset (CVE-2023-44487/CVE-2023-39325) vulnerability for an OpenShift Containers.

    Published: 4 Jan 2024
    7
    High

    CVE-2023-6270

    Last Modified: 24 Mar 2026

    A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the access through the `skbtxq` global queue. This could lead to a denial of service condition or potential code execution.

    Published: 4 Jan 2024
    3.1
    Low

    CVE-2024-22047

    Last Modified: 28 Nov 2025

    A race condition exists in Audited 4.0.0 to 5.3.3 that can result in an authenticated user to cause audit log entries to be attributed to another user.

    Published: 4 Jan 2024
    9.8
    Critical

    CVE-2023-51812

    Last Modified: 3 Jun 2025

    Tenda AX3 v16.03.12.11 was discovered to contain a remote code execution (RCE) vulnerability via the list parameter at /goform/SetNetControlList.

    Published: 4 Jan 2024
    7.5
    High

    CVE-2023-50082

    Last Modified: 9 Jun 2025

    Aoyun Technology pbootcms V3.1.2 is vulnerable to Incorrect Access Control, allows remote attackers to gain sensitive information via session leakage allows a user to avoid logging into the backend management platform.

    Published: 4 Jan 2024
    6.5
    Medium

    CVE-2023-29962

    Last Modified: 3 Jun 2025

    S-CMS v5.0 was discovered to contain an arbitrary file read vulnerability.

    Published: 4 Jan 2024
    6.1
    Medium

    CVE-2023-50630

    Last Modified: 17 Apr 2025

    Cross Site Scripting (XSS) vulnerability in xiweicheng TMS v.2.28.0 allows a remote attacker to execute arbitrary code via a crafted script to the click here function.

    Published: 4 Jan 2024
    9.8
    Critical

    CVE-2023-51154

    Last Modified: 18 Jun 2025

    Jizhicms v2.5 was discovered to contain an arbitrary file download vulnerability via the component /admin/c/PluginsController.php.

    Published: 4 Jan 2024
    6.1
    Medium

    CVE-2023-52322

    Last Modified: 3 Jun 2025

    ecrire/public/assembler.php in SPIP before 4.1.13 and 4.2.x before 4.2.7 allows XSS because input from _request() is not restricted to safe characters such as alphanumerics.

    Published: 4 Jan 2024
    4.9
    Medium

    CVE-2023-7207

    Last Modified: 26 Aug 2025

    Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.

    Published: 4 Jan 2024
    9.8
    Critical

    CVE-2024-22051

    Last Modified: 29 Nov 2025

    CommonMarker versions prior to 0.23.4 are at risk of an integer overflow vulnerability. This vulnerability can result in possibly unauthenticated remote attackers to cause heap memory corruption, potentially leading to an information leak or remote code execution, via parsing tables with marker rows that contain more than UINT16_MAX columns.

    Published: 4 Jan 2024
    7.5
    High

    CVE-2023-50256

    Last Modified: 17 Jun 2025

    Froxlor is open source server administration software. Prior to version 2.1.2, it was possible to submit the registration form with the essential fields, such as the username and password, left intentionally blank. This inadvertent omission allowed for a bypass of the mandatory field requirements (e.g. surname, company name) established by the system. Version 2.1.2 fixes this issue.

    Published: 3 Jan 2024
    6.8
    Medium

    CVE-2023-5138

    Last Modified: 3 Jun 2025

    Glitch detection is not enabled by default for the CortexM33 core in Silicon Labs secure vault high parts EFx32xG2xB, except EFR32xG21B.

    Published: 3 Jan 2024
    8.8
    High

    CVE-2024-0225

    Last Modified: 18 Jun 2025

    Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 3 Jan 2024
    8.8
    High

    CVE-2024-0224

    Last Modified: 18 Jun 2025

    Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 3 Jan 2024
    8.8
    High

    CVE-2024-0223

    Last Modified: 18 Jun 2025

    Heap buffer overflow in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 3 Jan 2024
    8.8
    High

    CVE-2024-0222

    Last Modified: 18 Jun 2025

    Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published: 3 Jan 2024
    6.5
    Medium

    CVE-2023-6540

    Last Modified: 17 Jun 2025

    A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.

    Published: 3 Jan 2024
    7.8
    High

    CVE-2023-6338

    Last Modified: 3 Jun 2025

    Uncontrolled search path vulnerabilities were reported in the Lenovo Universal Device Client (UDC) that could allow an attacker with local access to execute code with elevated privileges.

    Published: 3 Jan 2024
    8.2
    High

    CVE-2023-5881

    Last Modified: 21 Nov 2024

    Unauthenticated access permitted to web interface page The Genie Company Aladdin Connect (Retrofit-Kit Model ALDCM) "Garage Door Control Module Setup" and modify the Garage door's SSID settings.

    Published: 3 Jan 2024
    8.8
    High

    CVE-2023-5880

    Last Modified: 21 Nov 2024

    When the Genie Company Aladdin Connect garage door opener (Retrofit-Kit Model ALDCM) is placed into configuration mode the web servers “Garage Door Control Module Setup” page is vulnerable to XSS via a broadcast SSID name containing malicious code with client side Java Script and/or HTML. This allows the attacker to inject malicious code with client side Java Script and/or HTML into the users' web browser. 

    Published: 3 Jan 2024
    6.8
    Medium

    CVE-2023-5879

    Last Modified: 17 Jun 2025

    Users’ product account authentication data was stored in clear text in The Genie Company Aladdin Connect Mobile Application Version 5.65 Build 2075 (and below) on Android Devices. This allows the attacker, with access to the android device, to potentially retrieve users' clear text authentication credentials.

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-21633

    Last Modified: 3 Jun 2025

    Apktool is a tool for reverse engineering Android APK files. In versions 2.9.1 and prior, Apktool infers resource files' output path according to their resource names which can be manipulated by attacker to place files at desired location on the system Apktool runs on. Affected environments are those in which an attacker may write/overwrite any file that user has write access, and either user name is known or cwd is under user folder. Commit d348c43b24a9de350ff6e5bd610545a10c1fc712 contains a patch for this issue.

    Published: 3 Jan 2024
    6.5
    Medium

    CVE-2024-21631

    Last Modified: 21 Nov 2024

    Vapor is an HTTP web framework for Swift. Prior to version 4.90.0, Vapor's `vapor_urlparser_parse` function uses `uint16_t` indexes when parsing a URI's components, which may cause integer overflows when parsing untrusted inputs. This vulnerability does not affect Vapor directly but could impact applications relying on the URI type for validating user input. The URI type is used in several places in Vapor. A developer may decide to use URI to represent a URL in their application (especially if that URL is then passed to the HTTP Client) and rely on its public properties and methods. However, URI may fail to properly parse a valid (albeit abnormally long) URL, due to string ranges being converted to 16-bit integers. An attacker may use this behavior to trick the application into accepting a URL to an untrusted destination. By padding the port number with zeros, an attacker can cause an integer overflow to occur when the URL authority is parsed and, as a result, spoof the host. Version 4.90.0 contains a patch for this issue. As a workaround, validate user input before parsing as a URI or, if possible, use Foundation's `URL` and `URLComponents` utilities.

    Published: 3 Jan 2024
    5.4
    Medium

    CVE-2024-21622

    Last Modified: 17 Apr 2025

    Craft is a content management system. This is a potential moderate impact, low complexity privilege escalation vulnerability in Craft starting in 3.x prior to 3.9.6 and 4.x prior to 4.4.16 with certain user permissions setups. This has been fixed in Craft 4.4.16 and Craft 3.9.6. Users should ensure they are running at least those versions.

    Published: 3 Jan 2024
    9.6
    Critical

    CVE-2023-50253

    Last Modified: 9 Jun 2025

    Laf is a cloud development platform. In the Laf version design, the log uses communication with k8s to quickly retrieve logs from the container without the need for additional storage. However, in version 1.0.0-beta.13 and prior, this interface does not verify the permissions of the pod, which allows authenticated users to obtain any pod logs under the same namespace through this method, thereby obtaining sensitive information printed in the logs. As of time of publication, no known patched versions exist.

    Published: 3 Jan 2024
    4.8
    Medium

    CVE-2023-46742

    Last Modified: 3 Jun 2025

    CubeFS is an open-source cloud-native file storage system. CubeFS prior to version 3.3.1 was found to leak users secret keys and access keys in the logs in multiple components. When CubeCS creates new users, it leaks the users secret key. This could allow a lower-privileged user with access to the logs to retrieve sensitive information and impersonate other users with higher privileges than themselves. The issue has been patched in v3.3.1. There is no other mitigation than upgrading CubeFS.

    Published: 3 Jan 2024
    4.8
    Medium

    CVE-2023-46741

    Last Modified: 3 Jun 2025

    CubeFS is an open-source cloud-native file storage system. A vulnerability was found in CubeFS prior to version 3.3.1 that could allow users to read sensitive data from the logs which could allow them escalate privileges. CubeFS leaks configuration keys in plaintext format in the logs. These keys could allow anyone to carry out operations on blobs that they otherwise do not have permissions for. For example, an attacker that has succesfully retrieved a secret key from the logs can delete blogs from the blob store. The attacker can either be an internal user with limited privileges to read the log, or they can be an external user who has escalated privileges sufficiently to access the logs. The vulnerability has been patched in v3.3.1. There is no other mitigation than upgrading.

    Published: 3 Jan 2024
    6.5
    Medium

    CVE-2023-46740

    Last Modified: 17 Jun 2025

    CubeFS is an open-source cloud-native file storage system. Prior to version 3.3.1, CubeFS used an insecure random string generator to generate user-specific, sensitive keys used to authenticate users in a CubeFS deployment. This could allow an attacker to predict and/or guess the generated string and impersonate a user thereby obtaining higher privileges. When CubeFS creates new users, it creates a piece of sensitive information for the user called the “accessKey”. To create the "accesKey", CubeFS uses an insecure string generator which makes it easy to guess and thereby impersonate the created user. An attacker could leverage the predictable random string generator and guess a users access key and impersonate the user to obtain higher privileges. The issue has been fixed in v3.3.1. There is no other mitigation than to upgrade.

    Published: 3 Jan 2024
    6.5
    Medium

    CVE-2023-46739

    Last Modified: 17 Jun 2025

    CubeFS is an open-source cloud-native file storage system. A vulnerability was found during in the CubeFS master component in versions prior to 3.3.1 that could allow an untrusted attacker to steal user passwords by carrying out a timing attack. The root case of the vulnerability was that CubeFS used raw string comparison of passwords. The vulnerable part of CubeFS was the UserService of the master component. The UserService gets instantiated when starting the server of the master component. The issue has been patched in v3.3.1. For impacted users, there is no other way to mitigate the issue besides upgrading.

    Published: 3 Jan 2024
    6.1
    Medium

    CVE-2024-21911

    Last Modified: 28 Nov 2025

    TinyMCE versions before 5.6.0 are affected by a stored cross-site scripting vulnerability. An unauthenticated and remote attacker could insert crafted HTML into the editor resulting in arbitrary JavaScript execution in another user's browser.

    Published: 3 Jan 2024