CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2023-47787

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Bookings.This issue affects WooCommerce Bookings: from n/a through 2.0.3.

    Published: 18 Dec 2023
    5.5
    Medium

    CVE-2022-40312

    Last Modified: 28 Apr 2026

    Server-Side Request Forgery (SSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue affects GiveWP – Donation Plugin and Fundraising Platform: from n/a through 2.25.1.

    Published: 18 Dec 2023
    5.4
    Medium

    CVE-2023-6778

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository allegroai/clearml-server prior to 1.13.0.

    Published: 18 Dec 2023
    4.3
    Medium

    CVE-2023-49840

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Palscode Multi Currency For WooCommerce.This issue affects Multi Currency For WooCommerce: from n/a through 1.5.5.

    Published: 18 Dec 2023
    5.4
    Medium

    CVE-2023-49843

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in QuanticEdge First Order Discount Woocommerce.This issue affects First Order Discount Woocommerce: from n/a through 1.21.

    Published: 18 Dec 2023
    4.3
    Medium

    CVE-2023-49844

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Kevin Ohashi WPPerformanceTester.This issue affects WPPerformanceTester: from n/a through 2.0.0.

    Published: 18 Dec 2023
    5.4
    Medium

    CVE-2023-49853

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in PayTR Ödeme ve Elektronik Para Kuruluşu A.Ş. PayTR Taksit Tablosu – WooCommerce.This issue affects PayTR Taksit Tablosu – WooCommerce: from n/a through 1.3.1.

    Published: 18 Dec 2023
    6.5
    Medium

    CVE-2023-46177

    Last Modified: 21 Nov 2024

    IBM MQ Appliance 9.3 LTS and 9.3 CD could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request to view arbitrary files on the system. IBM X-Force ID: 269536.

    Published: 18 Dec 2023
    7.5
    High

    CVE-2023-3430

    Last Modified: 21 Nov 2024

    A vulnerability was found in OpenImageIO, where a heap buffer overflow exists in the src/gif.imageio/gifinput.cpp file. This flaw allows a remote attacker to pass a specially crafted file to the application, which triggers a heap-based buffer overflow and could cause a crash, leading to a denial of service.

    Published: 18 Dec 2023
    5.3
    Medium

    CVE-2022-41677

    Last Modified: 27 Nov 2024

    An information disclosure vulnerability was discovered in Bosch IP camera devices allowing an unauthenticated attacker to retrieve information (like capabilities) about the device itself and network settings of the device, disclosing possibly internal network settings if the device is connected to the internet.

    Published: 18 Dec 2023
    5.9
    Medium

    CVE-2023-35867

    Last Modified: 21 Nov 2024

    An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through Man-in-the-Middle attacks.

    Published: 18 Dec 2023
    7.5
    High

    CVE-2023-32230

    Last Modified: 21 Nov 2024

    An improper handling of a malformed API request to an API server in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation.

    Published: 18 Dec 2023
    7.2
    High

    CVE-2023-39509

    Last Modified: 21 Nov 2024

    A command injection vulnerability exists in Bosch IP cameras that allows an authenticated user with administrative rights to run arbitrary commands on the OS of the camera.

    Published: 18 Dec 2023
    5.3
    Medium

    CVE-2023-28053

    Last Modified: 21 Nov 2024

    Dell NetWorker Virtual Edition versions 19.8 and below contain the use of deprecated cryptographic algorithms in the SSH component. A remote unauthenticated attacker could potentially exploit this vulnerability leading to some information disclosure.

    Published: 18 Dec 2023
    5.4
    Medium

    CVE-2023-49854

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Tribe Interactive Caddy – Smart Side Cart for WooCommerce.This issue affects Caddy – Smart Side Cart for WooCommerce: from n/a through 1.9.7.

    Published: 18 Dec 2023
    6.5
    Medium

    CVE-2023-49855

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in BinaryCarpenter Menu Bar Cart Icon For WooCommerce By Binary Carpenter.This issue affects Menu Bar Cart Icon For WooCommerce By Binary Carpenter: from n/a through 1.49.3.

    Published: 18 Dec 2023
    4.3
    Medium

    CVE-2023-50372

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Hiroaki Miyashita Custom Post Type Page Template.This issue affects Custom Post Type Page Template: from n/a through 1.1.

    Published: 18 Dec 2023
    4.6
    Medium

    CVE-2023-32728

    Last Modified: 27 Nov 2024

    The Zabbix Agent 2 item key smart.disk.get does not sanitize its parameters before passing them to a shell command resulting possible vulnerability for remote code execution.

    Published: 18 Dec 2023
    6.8
    Medium

    CVE-2023-32727

    Last Modified: 3 Nov 2025

    An attacker who has the privilege to configure Zabbix items can use function icmpping() with additional malicious command inside it to execute arbitrary code on the current Zabbix server.

    Published: 18 Dec 2023
    3.9
    Low

    CVE-2023-32726

    Last Modified: 3 Nov 2025

    The vulnerability is caused by improper check for check if RDLENGTH does not overflow the buffer in response from DNS server.

    Published: 18 Dec 2023
    9.6
    Critical

    CVE-2023-32725

    Last Modified: 21 Nov 2024

    The website configured in the URL widget will receive a session cookie when testing or executing scheduled reports. The received session cookie can then be used to access the frontend as the particular user.

    Published: 18 Dec 2023
    4.8
    Medium

    CVE-2023-6911

    Last Modified: 21 Nov 2024

    Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting (XSS) attack can be carried out by an attacker injecting a malicious payload into the Registry feature of the Management Console.

    Published: 18 Dec 2023
    8.2
    High

    CVE-2023-41314

    Last Modified: 21 Nov 2024

    The api /api/snapshot and /api/get_log_file would allow unauthenticated access. It could allow a DoS attack or get arbitrary files from FE node. Please upgrade to 2.0.3 to fix these issues.

    Published: 18 Dec 2023
    9.1
    Critical

    CVE-2023-6483

    Last Modified: 7 May 2025

    The vulnerability exists in ADiTaaS (Allied Digital Integrated Tool-as-a-Service) version 5.1 due to an improper authentication vulnerability in the ADiTaaS backend API. An unauthenticated remote attacker could exploit this vulnerability by sending specially crafted HTTP requests to the vulnerable platform. Successful exploitation of this vulnerability could allow the attacker to gain full access to the customers’ data and completely compromise the targeted platform.

    Published: 18 Dec 2023
    3.1
    Low

    CVE-2023-6908

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, was found in DFIRKuiper Kuiper 2.3.4. This affects the function unzip_file of the file kuiper/app/controllers/case_management.py of the component TAR Archive Handler. The manipulation of the argument dst_path leads to path traversal. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. Upgrading to version 2.3.5 is able to address this issue. The identifier of the patch is 94fa135153002f651f5526c55a7240e083db8d73. It is recommended to upgrade the affected component. The identifier VDB-248277 was assigned to this vulnerability.

    Published: 18 Dec 2023
    5.4
    Medium

    CVE-2023-6907

    Last Modified: 21 Nov 2024

    A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /file-manager/delete.php of the component Deletion Interface. The manipulation of the argument file leads to improper authentication. The exploit has been disclosed to the public and may be used. The identifier VDB-248269 was assigned to this vulnerability.

    Published: 18 Dec 2023
    7.5
    High

    CVE-2023-6909

    Last Modified: 21 Nov 2024

    Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2.

    Published: 18 Dec 2023
    9.8
    Critical

    CVE-2023-6906

    Last Modified: 7 May 2025

    A vulnerability, which was classified as critical, was found in Totolink A7100RU 7.4cu.2313_B20191024. Affected is the function main of the file /cgi-bin/cstecgi.cgi?action=login of the component HTTP POST Request Handler. The manipulation of the argument flag with the input ie8 leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-248268. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 18 Dec 2023
    6.5
    Medium

    CVE-2023-51385

    Last Modified: 12 May 2026

    In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations. For example, an untrusted Git repository can have a submodule with shell metacharacters in a user name or host name.

    Published: 18 Dec 2023
    5.5
    Medium

    CVE-2023-51384

    Last Modified: 28 May 2026

    In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constraints are specified during addition of PKCS#11-hosted private keys, these constraints are only applied to the first key, even if a PKCS#11 token returns multiple keys.

    Published: 18 Dec 2023
    3.7
    Low

    CVE-2023-6918

    Last Modified: 21 Nov 2025

    A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked, which could cause low-memory situations failures, NULL dereferences, crashes, or usage of the uninitialized memory as an input for the KDF. In this case, non-matching keys will result in decryption/integrity failures, terminating the connection.

    Published: 18 Dec 2023
    6.8
    Medium

    CVE-2024-0565

    Last Modified: 6 Nov 2025

    An out-of-bounds memory read flaw was found in receive_encrypted_standard in fs/smb/client/smb2ops.c in the SMB Client sub-component in the Linux Kernel. This issue occurs due to integer underflow on the memcpy length, leading to a denial of service.

    Published: 18 Dec 2023
    5.9
    Medium

    CVE-2023-50979

    Last Modified: 21 Nov 2024

    Crypto++ (aka cryptopp) through 8.9.0 has a Marvin side channel during decryption with PKCS#1 v1.5 padding.

    Published: 18 Dec 2023
    7.5
    High

    CVE-2023-50980

    Last Modified: 21 Nov 2024

    gf2n.cpp in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (application crash) via DER public-key data for an F(2^m) curve, if the degree of each term in the polynomial is not strictly decreasing.

    Published: 18 Dec 2023
    7.5
    High

    CVE-2023-50981

    Last Modified: 7 May 2025

    ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop) via crafted DER public-key data associated with squared odd numbers, such as the square of 268995137513890432434389773128616504853.

    Published: 18 Dec 2023
    —
    Unknown

    CVE-2023-51195

    Last Modified: 10 Jan 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 18 Dec 2023
    5.3
    Medium

    CVE-2023-51765

    Last Modified: 21 Nov 2024

    sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports <LF>.<CR><LF> but some other popular e-mail servers do not. This is resolved in 8.18 and later versions with 'o' in srv_features.

    Published: 18 Dec 2023
    7.8
    High

    CVE-2023-6817

    Last Modified: 12 May 2026

    A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The function nft_pipapo_walk did not skip inactive elements during set walk which could lead double deactivations of PIPAPO (Pile Packet Policies) elements, leading to use-after-free. We recommend upgrading past commit 317eb9685095678f2c9f5a8189de698c5354316a.

    Published: 18 Dec 2023
    0
    Low

    CVE-2023-6920

    Last Modified: 18 Dec 2023

    This flaw was found to be a duplicate of CVE-2023-6927. Please see https://access.redhat.com/security/cve/CVE-2023-6927 for information about affected products and security errata.

    Published: 18 Dec 2023
    5.9
    Medium

    CVE-2023-48795

    Last Modified: 12 May 2026

    The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack. This occurs because the SSH Binary Packet Protocol (BPP), implemented by these extensions, mishandles the handshake phase and mishandles use of sequence numbers. For example, there is an effective attack against SSH's use of ChaCha20-Poly1305 (and CBC with Encrypt-then-MAC). The bypass occurs in [email protected] and (if CBC is used) the [email protected] MAC algorithms. This also affects Maverick Synergy Java SSH API before 3.1.0-SNAPSHOT, Dropbear through 2022.83, Ssh before 5.1.1 in Erlang/OTP, PuTTY before 0.80, AsyncSSH before 2.14.2, golang.org/x/crypto before 0.17.0, libssh before 0.10.6, libssh2 through 1.11.0, Thorn Tech SFTP Gateway before 3.4.6, Tera Term before 5.1, Paramiko before 3.4.0, jsch before 0.2.15, SFTPGo before 2.5.6, Netgate pfSense Plus through 23.09.1, Netgate pfSense CE through 2.7.2, HPN-SSH through 18.2.0, ProFTPD before 1.3.8b (and before 1.3.9rc2), ORYX CycloneSSH before 2.3.4, NetSarang XShell 7 before Build 0144, CrushFTP before 10.6.0, ConnectBot SSH library before 2.2.22, Apache MINA sshd through 2.11.0, sshj through 0.37.0, TinySSH through 20230101, trilead-ssh2 6401, LANCOM LCOS and LANconfig, FileZilla before 3.66.4, Nova before 11.8, PKIX-SSH before 14.4, SecureCRT before 9.4.3, Transmit5 before 5.10.4, Win32-OpenSSH before 9.5.0.0p1-Beta, WinSCP before 6.2.2, Bitvise SSH Server before 9.32, Bitvise SSH Client before 9.33, KiTTY through 0.76.1.13, the net-ssh gem 7.2.0 for Ruby, the mscdex ssh2 module before 1.15.0 for Node.js, the thrussh library before 0.35.1 for Rust, and the Russh crate before 0.40.2 for Rust.

    Published: 18 Dec 2023
    5.3
    Medium

    CVE-2023-51764

    Last Modified: 4 Nov 2025

    Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and smtpd_discard_ehlo_keywords=chunking (or certain other options that exist in recent versions). Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Postfix supports <LF>.<CR><LF> but some other popular e-mail servers do not. To prevent attack variants (by always disallowing <LF> without <CR>), a different solution is required, such as the smtpd_forbid_bare_newline=yes option with a Postfix minimum version of 3.5.23, 3.6.13, 3.7.9, 3.8.4, or 3.9.

    Published: 18 Dec 2023
    4.8
    Medium

    CVE-2023-6004

    Last Modified: 7 Nov 2025

    A flaw was found in libssh. By utilizing the ProxyCommand or ProxyJump feature, users can exploit unchecked hostname syntax on the client. This issue may allow an attacker to inject malicious code into the command of the features mentioned through the hostname parameter.

    Published: 18 Dec 2023
    4.6
    Medium

    CVE-2023-6927

    Last Modified: 11 Nov 2025

    A flaw was found in Keycloak. This issue may allow an attacker to steal authorization codes or tokens from clients using a wildcard in the JARM response mode "form_post.jwt" which could be used to bypass the security patch implemented to address CVE-2023-6134.

    Published: 18 Dec 2023
    4.3
    Medium

    CVE-2023-6905

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, has been found in Jahastech NxFilter 4.3.2.5. This issue affects some unknown processing of the file user,adap.jsp?actionFlag=test&id=1 of the component Bind Request Handler. The manipulation leads to ldap injection. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-248267. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 17 Dec 2023
    4.9
    Medium

    CVE-2023-3907

    Last Modified: 23 Apr 2026

    A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4, and 16.6 prior to 16.6.2 allows a project Maintainer to use a Project Access Token to escalate their role to Owner

    Published: 17 Dec 2023
    4.3
    Medium

    CVE-2023-6904

    Last Modified: 21 Nov 2024

    A vulnerability classified as problematic was found in Jahastech NxFilter 4.3.2.5. This vulnerability affects unknown code of the file /config,admin.jsp. The manipulation of the argument admin_name leads to cross-site request forgery. The attack can be initiated remotely. VDB-248266 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 17 Dec 2023
    7.3
    High

    CVE-2023-6903

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security Gateway 6.3.1. This affects an unknown part of the file /admin/singlelogin.php?submit=1. The manipulation of the argument loginId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-248265 was assigned to this vulnerability.

    Published: 17 Dec 2023
    5.5
    Medium

    CVE-2023-6902

    Last Modified: 21 Nov 2024

    A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical. This vulnerability affects unknown code of the file /file-manager/upload.php. The manipulation of the argument file leads to unrestricted upload. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-248260.

    Published: 17 Dec 2023
    7.2
    High

    CVE-2023-50271

    Last Modified: 21 Nov 2024

    A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability could be exploited locally or remotely to disclose information.

    Published: 17 Dec 2023
    7.3
    High

    CVE-2023-6901

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as critical, was found in codelyfe Stupid Simple CMS up to 1.2.3. This affects an unknown part of the file /terminal/handle-command.php of the component HTTP POST Request Handler. The manipulation of the argument command with the input whoami leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-248259.

    Published: 17 Dec 2023