CVE Feed

    Dashboard / CVE

    3.1
    Low

    CVE-2023-50348

    Last Modified: 18 Jun 2025

    HCL DRYiCE MyXalytics is impacted by an improper error handling vulnerability. The application returns detailed error messages that can provide an attacker with insight into the application, system, etc.

    Published: 3 Jan 2024
    6.4
    Medium

    CVE-2023-41780

    Last Modified: 28 Jan 2025

    There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the  program  failed to adequately validate the user's input, an attacker could exploit this vulnerability  to escalate local privileges.

    Published: 3 Jan 2024
    8.2
    High

    CVE-2023-50350

    Last Modified: 18 Jun 2025

    HCL DRYiCE MyXalytics is impacted by the use of a broken cryptographic algorithm for encryption, potentially giving an attacker ability to decrypt sensitive information.

    Published: 3 Jan 2024
    8.2
    High

    CVE-2023-50351

    Last Modified: 18 Jun 2025

    HCL DRYiCE MyXalytics is impacted by the use of an insecure key rotation mechanism which can allow an attacker to compromise the confidentiality or integrity of data.

    Published: 3 Jan 2024
    4.4
    Medium

    CVE-2023-41779

    Last Modified: 28 Jan 2025

    There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an attacker with the common user permission, the physical machine will be crashed.

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-0210

    Last Modified: 27 Mar 2026

    Zigbee TLV dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-0211

    Last Modified: 27 Mar 2026

    DOCSIS dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-0209

    Last Modified: 27 Mar 2026

    IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-0208

    Last Modified: 27 Mar 2026

    GVCP dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture file

    Published: 3 Jan 2024
    8.2
    High

    CVE-2023-45559

    Last Modified: 3 Jun 2025

    An issue in Tamaki_hamanoki Line v.13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.

    Published: 3 Jan 2024
    7.5
    High

    CVE-2023-37608

    Last Modified: 3 Jun 2025

    An issue in Automatic Systems SOC FL9600 FirstLane V06 lego_T04E00 allows a remote attacker to obtain sensitive information because there is an automaticsystems super admin account with astech as its hardcoded password.

    Published: 3 Jan 2024
    9.6
    Critical

    CVE-2023-39655

    Last Modified: 18 Jun 2025

    A host header injection vulnerability exists in the NPM package @perfood/couch-auth versions <= 0.20.0. By sending a specially crafted host header in the forgot password request, it is possible to send password reset links to users which, once clicked, lead to an attacker-controlled server and thus leak the password reset token. This may allow an attacker to reset other users' passwords and take over their accounts.

    Published: 3 Jan 2024
    7.7
    High

    CVE-2023-42358

    Last Modified: 18 Jun 2025

    An issue was discovered in O-RAN Software Community ric-plt-e2mgr in the G-Release environment, allows remote attackers to cause a denial of service (DoS) via a crafted request to the E2Manager API component.

    Published: 3 Jan 2024
    9.8
    Critical

    CVE-2023-46308

    Last Modified: 24 Dec 2025

    In Plotly plotly.js before 2.25.2, plot API calls have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.

    Published: 3 Jan 2024
    7.5
    High

    CVE-2023-46929

    Last Modified: 18 Jun 2025

    An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tools/av_parsers.c:6872:55 allows attackers to crash the application.

    Published: 3 Jan 2024
    7.5
    High

    CVE-2023-47473

    Last Modified: 21 Nov 2024

    Directory Traversal vulnerability in fuwushe.org iFair versions 23.8_ad0 and before allows an attacker to obtain sensitive information via a crafted script.

    Published: 3 Jan 2024
    9.8
    Critical

    CVE-2023-49442

    Last Modified: 17 Apr 2025

    Deserialization of Untrusted Data in jeecgFormDemoController in JEECG 4.0 and earlier allows attackers to run arbitrary code via crafted POST request.

    Published: 3 Jan 2024
    9.8
    Critical

    CVE-2023-50090

    Last Modified: 3 Jun 2025

    Arbitrary File Write vulnerability in the saveReportFile method of ureport2 2.2.9 and before allows attackers to write arbitrary files and run arbitrary commands via crafted POST request.

    Published: 3 Jan 2024
    6.1
    Medium

    CVE-2023-50092

    Last Modified: 17 Jun 2025

    APIIDA API Gateway Manager for Broadcom Layer7 v2023.2 is vulnerable to Cross Site Scripting (XSS).

    Published: 3 Jan 2024
    6.1
    Medium

    CVE-2023-50093

    Last Modified: 18 Jun 2025

    APIIDA API Gateway Manager for Broadcom Layer7 v2023.2.2 is vulnerable to Host Header Injection.

    Published: 3 Jan 2024
    7.2
    High

    CVE-2023-50922

    Last Modified: 3 Jun 2025

    An issue was discovered on GL.iNet devices through 4.5.0. Attackers who are able to steal the AdminToken cookie can execute arbitrary code by uploading a crontab-formatted file to a specific directory and waiting for its execution. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7, and B1300 4.3.7.

    Published: 3 Jan 2024
    7.8
    High

    CVE-2024-0207

    Last Modified: 27 Mar 2026

    HTTP3 dissector crash in Wireshark 4.2.0 allows denial of service via packet injection or crafted capture file

    Published: 3 Jan 2024
    7.5
    High

    CVE-2024-21634

    Last Modified: 3 Nov 2025

    Amazon Ion is a Java implementation of the Ion data notation. Prior to version 1.10.5, a potential denial-of-service issue exists in `ion-java` for applications that use `ion-java` to deserialize Ion text encoded data, or deserialize Ion text or binary encoded data into the `IonValue` model and then invoke certain `IonValue` methods on that in-memory representation. An actor could craft Ion data that, when loaded by the affected application and/or processed using the `IonValue` model, results in a `StackOverflowError` originating from the `ion-java` library. The patch is included in `ion-java` 1.10.5. As a workaround, do not load data which originated from an untrusted source or that could have been tampered with.

    Published: 3 Jan 2024
    7.5
    High

    CVE-2023-37607

    Last Modified: 3 Jun 2025

    Directory Traversal in Automatic Systems SOC FL9600 FirstLane V06 lego_T04E00 allows a remote attacker to obtain sensitive information via csvServer.php?file= with a .. in the dir parameter.

    Published: 3 Jan 2024
    9.8
    Critical

    CVE-2023-50921

    Last Modified: 18 Jun 2025

    An issue was discovered on GL.iNet devices through 4.5.0. Attackers can invoke the add_user interface in the system module to gain root privileges. This affects A1300 4.4.6, AX1800 4.4.6, AXT1800 4.4.6, MT3000 4.4.6, MT2500 4.4.6, MT6000 4.5.0, MT1300 4.3.7, MT300N-V2 4.3.7, AR750S 4.3.7, AR750 4.3.7, AR300M 4.3.7, and B1300 4.3.7.

    Published: 3 Jan 2024
    3.3
    Low

    CVE-2024-0217

    Last Modified: 21 Nov 2025

    A use-after-free flaw was found in PackageKitd. In some conditions, the order of cleanup mechanics for a transaction could be impacted. As a result, some memory access could occur on memory regions that were previously freed. Once freed, a memory region can be reused for other allocations and any previously stored data in this memory region is considered lost.

    Published: 3 Jan 2024
    10
    Critical

    CVE-2023-48418

    Last Modified: 3 Jun 2025

    In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a     possible way to access adb before SUW completion due to an insecure default     value. This could lead to local escalation of privilege with no additional     execution privileges needed. User interaction is not needed for     exploitation

    Published: 2 Jan 2024
    8.6
    High

    CVE-2024-21632

    Last Modified: 17 Jun 2025

    omniauth-microsoft_graph provides an Omniauth strategy for the Microsoft Graph API. Prior to versions 2.0.0, the implementation did not validate the legitimacy of the `email` attribute of the user nor did it give/document an option to do so, making it susceptible to nOAuth misconfiguration in cases when the `email` is used as a trusted user identifier. This could lead to account takeover. Version 2.0.0 contains a fix for this issue.

    Published: 2 Jan 2024
    10
    Critical

    CVE-2023-6339

    Last Modified: 3 Jun 2025

    Google Nest WiFi Pro root code-execution & user-data compromise

    Published: 2 Jan 2024
    5.9
    Medium

    CVE-2024-21629

    Last Modified: 17 Jun 2025

    Rust EVM is an Ethereum Virtual Machine interpreter. In `rust-evm`, a feature called `record_external_operation` was introduced, allowing library users to record custom gas changes. This feature can have some bogus interactions with the call stack. In particular, during finalization of a `CREATE` or `CREATE2`, in the case that the substack execution happens successfully, `rust-evm` will first commit the substate, and then call `record_external_operation(Write(out_code.len()))`. If `record_external_operation` later fails, this error is returned to the parent call stack, instead of `Succeeded`. Yet, the substate commitment already happened. This causes smart contracts able to commit state changes, when the parent caller contract receives zero address (which usually indicates that the execution has failed). This issue only impacts library users with custom `record_external_operation` that returns errors. The issue is patched in release 0.41.1. No known workarounds are available.

    Published: 2 Jan 2024
    8.4
    High

    CVE-2023-4164

    Last Modified: 21 Nov 2024

    There is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of health data with no additional execution privileges needed.

    Published: 2 Jan 2024
    5.4
    Medium

    CVE-2024-21628

    Last Modified: 21 Nov 2024

    PrestaShop is an open-source e-commerce platform. Prior to version 8.1.3, the isCleanHtml method is not used on this this form, which makes it possible to store a cross-site scripting payload in the database. The impact is low because the HTML is not interpreted in BO, thanks to twig's escape mechanism. In FO, the cross-site scripting attack is effective, but only impacts the customer sending it, or the customer session from which it was sent. This issue affects those who have a module fetching these messages from the DB and displaying it without escaping HTML. Version 8.1.3 contains a patch for this issue.

    Published: 2 Jan 2024
    8.1
    High

    CVE-2024-21627

    Last Modified: 3 Jun 2025

    PrestaShop is an open-source e-commerce platform. Prior to versions 8.1.3 and 1.7.8.11, some event attributes are not detected by the `isCleanHTML` method. Some modules using the `isCleanHTML` method could be vulnerable to cross-site scripting. Versions 8.1.3 and 1.7.8.11 contain a patch for this issue. The best workaround is to use the `HTMLPurifier` library to sanitize html input coming from users. The library is already available as a dependency in the PrestaShop project. Beware though that in legacy object models, fields of `HTML` type will call `isCleanHTML`.

    Published: 2 Jan 2024
    9.8
    Critical

    CVE-2024-21623

    Last Modified: 21 Nov 2024

    OTCLient is an alternative tibia client for otserv. Prior to commit db560de0b56476c87a2f967466407939196dd254, the /mehah/otclient "`Analysis - SonarCloud`" workflow is vulnerable to an expression injection in Actions, allowing an attacker to run commands remotely on the runner, leak secrets, and alter the repository using this workflow. Commit db560de0b56476c87a2f967466407939196dd254 contains a fix for this issue.

    Published: 2 Jan 2024
    6.1
    Medium

    CVE-2023-51652

    Last Modified: 17 Apr 2025

    OWASP AntiSamy .NET is a library for performing cleansing of HTML coming from untrusted sources. Prior to version 1.2.0, there is a potential for a mutation cross-site scripting (mXSS) vulnerability in AntiSamy caused by flawed parsing of the HTML being sanitized. To be subject to this vulnerability the `preserveComments` directive must be enabled in your policy file and also allow for certain tags at the same time. As a result, certain crafty inputs can result in elements in comment tags being interpreted as executable when using AntiSamy's sanitized output. This is patched in OWASP AntiSamy .NET 1.2.0 and later. See important remediation details in the reference given below. As a workaround, manually edit the AntiSamy policy file (e.g., antisamy.xml) by deleting the `preserveComments` directive or setting its value to `false`, if present. Also it would be useful to make AntiSamy remove the `noscript` tag by adding a line described in the GitHub Security Advisory to the tag definitions under the `<tagrules>` node, or deleting it entirely if present. As the previously mentioned policy settings are preconditions for the mXSS attack to work, changing them as recommended should be sufficient to protect you against this vulnerability when using a vulnerable version of this library. However, the existing bug would still be present in AntiSamy or its parser dependency (HtmlAgilityPack). The safety of this workaround relies on configurations that may change in the future and don't address the root cause of the vulnerability. As such, it is strongly recommended to upgrade to a fixed version of AntiSamy.

    Published: 2 Jan 2024
    5.7
    Medium

    CVE-2023-50711

    Last Modified: 13 Feb 2025

    vmm-sys-util is a collection of modules that provides helpers and utilities used by multiple rust-vmm components. Starting in version 0.5.0 and prior to version 0.12.0, an issue in the `FamStructWrapper::deserialize` implementation provided by the crate for `vmm_sys_util::fam::FamStructWrapper` can lead to out of bounds memory accesses. The deserialization does not check that the length stored in the header matches the flexible array length. Mismatch in the lengths might allow out of bounds memory access through Rust-safe methods. The issue was corrected in version 0.12.0 by inserting a check that verifies the lengths of compared flexible arrays are equal for any deserialized header and aborting deserialization otherwise. Moreover, the API was changed so that header length can only be modified through Rust-unsafe code. This ensures that users cannot trigger out-of-bounds memory access from Rust-safe code.

    Published: 2 Jan 2024
    6.7
    Medium

    CVE-2023-49794

    Last Modified: 9 May 2025

    KernelSU is a Kernel-based root solution for Android devices. In versions 0.7.1 and prior, the logic of get apk path in KernelSU kernel module can be bypassed, which causes any malicious apk named `me.weishu.kernelsu` get root permission. If a KernelSU module installed device try to install any not checked apk which package name equal to the official KernelSU Manager, it can take over root privileges on the device. As of time of publication, a patched version is not available.

    Published: 2 Jan 2024
    10
    Critical

    CVE-2023-48419

    Last Modified: 17 Jun 2025

    An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege 

    Published: 2 Jan 2024
    7.5
    High

    CVE-2022-3010

    Last Modified: 4 Jun 2025

    The Priva TopControl Suite contains predictable credentials for the SSH service, based on the Serial number. Which makes it possible for an attacker to calculate the login credentials for the Priva TopControll suite.

    Published: 2 Jan 2024
    6.3
    Medium

    CVE-2024-0196

    Last Modified: 17 Jun 2025

    A vulnerability has been found in Magic-Api up to 2.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /resource/file/api/save?auto=1. The manipulation leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249511.

    Published: 2 Jan 2024
    6.3
    Medium

    CVE-2024-0195

    Last Modified: 17 Jun 2025

    A vulnerability, which was classified as critical, was found in spider-flow 0.4.3. Affected is the function FunctionService.saveFunction of the file src/main/java/org/spiderflow/controller/FunctionController.java. The manipulation leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-249510 is the identifier assigned to this vulnerability.

    Published: 2 Jan 2024
    9.3
    Critical

    CVE-2023-4280

    Last Modified: 13 Jun 2025

    An unvalidated input in Silicon Labs TrustZone implementation in v4.3.x and earlier of the Gecko SDK allows an attacker to access the trusted region of memory from the untrusted region.

    Published: 2 Jan 2024
    6.3
    Medium

    CVE-2024-0194

    Last Modified: 3 Jun 2025

    A vulnerability, which was classified as critical, has been found in CodeAstro Internet Banking System up to 1.0. This issue affects some unknown processing of the file pages_account.php of the component Profile Picture Handler. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249509 was assigned to this vulnerability.

    Published: 2 Jan 2024
    6.3
    Medium

    CVE-2024-0192

    Last Modified: 17 Jun 2025

    A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file downloadable.php of the component Add Downloadable. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249505 was assigned to this vulnerability.

    Published: 2 Jan 2024
    3.5
    Low

    CVE-2018-25097

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, was found in Acumos Design Studio up to 2.0.7. Affected is an unknown function. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 2.0.8 is able to address this issue. The name of the patch is 0df8a5e8722188744973168648e4c74c69ce67fd. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-249420.

    Published: 2 Jan 2024
    5.3
    Medium

    CVE-2024-0191

    Last Modified: 3 Jun 2025

    A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/uploads/. The manipulation leads to file and directory information exposure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-249504.

    Published: 2 Jan 2024
    3.5
    Low

    CVE-2024-0190

    Last Modified: 17 Jun 2025

    A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This issue affects some unknown processing of the file add_quiz.php of the component Quiz Handler. The manipulation of the argument Quiz Title/Quiz Description with the input </title><scRipt>alert(x)</scRipt> leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249503.

    Published: 2 Jan 2024
    2.6
    Low

    CVE-2017-20188

    Last Modified: 3 Jun 2025

    A vulnerability has been found in Zimbra zm-ajax up to 8.8.1 and classified as problematic. Affected by this vulnerability is the function XFormItem.prototype.setError of the file WebRoot/js/ajax/dwt/xforms/XFormItem.js. The manipulation of the argument message leads to cross site scripting. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. Upgrading to version 8.8.2 is able to address this issue. The identifier of the patch is 8d039d6efe80780adc40c6f670c06d21de272105. It is recommended to upgrade the affected component. The identifier VDB-249421 was assigned to this vulnerability.

    Published: 2 Jan 2024
    3.5
    Low

    CVE-2024-0189

    Last Modified: 9 May 2025

    A vulnerability has been found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This vulnerability affects unknown code of the file teacher_message.php of the component Create Message Handler. The manipulation of the argument Content with the input </title><scRipt>alert(x)</scRipt> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249502 is the identifier assigned to this vulnerability.

    Published: 2 Jan 2024
    3.5
    Low

    CVE-2015-10128

    Last Modified: 17 Apr 2025

    A vulnerability was found in rt-prettyphoto Plugin up to 1.2 on WordPress and classified as problematic. Affected by this issue is the function royal_prettyphoto_plugin_links of the file rt-prettyphoto.php. The manipulation leads to cross site scripting. The attack may be launched remotely. Upgrading to version 1.3 is able to address this issue. The patch is identified as 0d3d38cfa487481b66869e4212df1cefc281ecb7. It is recommended to upgrade the affected component. VDB-249422 is the identifier assigned to this vulnerability.

    Published: 2 Jan 2024