CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2021-46899

    Last Modified: 21 Nov 2024

    SyncTrayzor 1.1.29 enables CEF (Chromium Embedded Framework) remote debugging, allowing a local attacker to control the application.

    Published: 9 Dec 2023
    9.8
    Critical

    CVE-2023-46932

    Last Modified: 27 May 2025

    Heap Buffer Overflow vulnerability in GPAC version 2.3-DEV-rev617-g671976fcc-master, allows attackers to execute arbitrary code and cause a denial of service (DoS) via str2ulong class in src/media_tools/avilib.c in gpac/MP4Box.

    Published: 9 Dec 2023
    4.3
    Medium

    CVE-2023-28871

    Last Modified: 21 Nov 2024

    Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creating a symbolic link.

    Published: 9 Dec 2023
    5.4
    Medium

    CVE-2023-28873

    Last Modified: 21 Nov 2024

    An XSS issue in wiki and discussion pages in Seafile 9.0.6 allows attackers to inject JavaScript into the Markdown editor.

    Published: 9 Dec 2023
    6.1
    Medium

    CVE-2023-28874

    Last Modified: 21 Nov 2024

    The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary sites.

    Published: 9 Dec 2023
    8.1
    High

    CVE-2023-28868

    Last Modified: 21 Nov 2024

    Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creating a symbolic link.

    Published: 9 Dec 2023
    6.5
    Medium

    CVE-2023-28869

    Last Modified: 26 Nov 2024

    Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system by creating a symbolic link.

    Published: 9 Dec 2023
    6.5
    Medium

    CVE-2023-28870

    Last Modified: 21 Nov 2024

    Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files from low-privileged user accounts.

    Published: 9 Dec 2023
    9.8
    Critical

    CVE-2023-47254

    Last Modified: 21 Nov 2024

    An OS Command Injection in the CLI interface on DrayTek Vigor167 version 5.2.2, allows remote attackers to execute arbitrary system commands and escalate privileges via any account created within the web interface.

    Published: 9 Dec 2023
    5.5
    Medium

    CVE-2023-47465

    Last Modified: 21 Nov 2024

    An issue in GPAC v.2.2.1 and before allows a local attacker to cause a denial of service (DoS) via the ctts_box_read function of file src/isomedia/box_code_base.c.

    Published: 9 Dec 2023
    9.1
    Critical

    CVE-2023-50429

    Last Modified: 21 Nov 2024

    IzyBat Orange casiers before 20230803_1 allows getEnsemble.php ensemble SQL injection.

    Published: 9 Dec 2023
    6.4
    Medium

    CVE-2023-50430

    Last Modified: 21 Nov 2024

    The Goodix Fingerprint Device, as shipped in Dell Inspiron 15 computers, does not follow the Secure Device Connection Protocol (SDCP) when enrolling via Linux, and accepts an unauthenticated configuration packet to select the Windows template database, which allows bypass of Windows Hello authentication by enrolling an attacker's fingerprint.

    Published: 9 Dec 2023
    5.3
    Medium

    CVE-2023-50428

    Last Modified: 21 Nov 2024

    In Bitcoin Core through 26.0 and Bitcoin Knots before 25.1.knots20231115, datacarrier size limits can be bypassed by obfuscating data as code (e.g., with OP_FALSE OP_IF), as exploited in the wild by Inscriptions in 2022 and 2023. NOTE: although this is a vulnerability from the perspective of the Bitcoin Knots project, some others consider it "not a bug."

    Published: 9 Dec 2023
    7.5
    High

    CVE-2023-49799

    Last Modified: 27 Nov 2024

    `nuxt-api-party` is an open source module to proxy API requests. nuxt-api-party attempts to check if the user has passed an absolute URL to prevent the aforementioned attack. This has been recently changed to use the regular expression `^https?://`, however this regular expression can be bypassed by an absolute URL with leading whitespace. For example `\nhttps://whatever.com` which has a leading newline. According to the fetch specification, before a fetch is made the URL is normalized. "To normalize a byte sequence potentialValue, remove any leading and trailing HTTP whitespace bytes from potentialValue.". This means the final request will be normalized to `https://whatever.com` bypassing the check and nuxt-api-party will send a request outside of the whitelist. This could allow us to leak credentials or perform Server-Side Request Forgery (SSRF). This vulnerability has been addressed in version 0.22.1. Users are advised to upgrade. Users unable to upgrade should revert to the previous method of detecting absolute URLs.

    Published: 8 Dec 2023
    7.5
    High

    CVE-2023-49800

    Last Modified: 21 Nov 2024

    `nuxt-api-party` is an open source module to proxy API requests. The library allows the user to send many options directly to `ofetch`. There is no filter on which options are available. We can abuse the retry logic to cause the server to crash from a stack overflow. fetchOptions are obtained directly from the request body. A malicious user can construct a URL known to not fetch successfully, then set the retry attempts to a high value, this will cause a stack overflow as ofetch error handling works recursively resulting in a denial of service. This issue has been addressed in version 0.22.1. Users are advised to upgrade. Users unable to upgrade should limit ofetch options.

    Published: 8 Dec 2023
    5.9
    Medium

    CVE-2023-49798

    Last Modified: 21 Nov 2024

    OpenZeppelin Contracts is a library for smart contract development. A merge issue when porting the 5.0.1 patch to the 4.9 branch caused a line duplication. In the version of `Multicall.sol` released in `@openzeppelin/[email protected]` and `@openzeppelin/[email protected]`, all subcalls are executed twice. Concretely, this exposes a user to unintentionally duplicate operations like asset transfers. The duplicated delegatecall was removed in version 4.9.5. The 4.9.4 version is marked as deprecated. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-34320

    Last Modified: 4 Nov 2025

    Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could deadlock a core due to the execution of either a load to device or non-cacheable memory, and either a store exclusive or register read of the Physical Address Register (PAR_EL1) in close proximity.

    Published: 8 Dec 2023
    8
    High

    CVE-2023-48311

    Last Modified: 21 Nov 2024

    dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers. Users of JupyterHub deployments running DockerSpawner starting with 0.11.0 without specifying `DockerSpawner.allowed_images` configuration allow users to launch _any_ pullable docker image, instead of restricting to only the single configured image, as intended. This issue has been addressed in commit `3ba4b665b` which has been included in dockerspawner release version 13. Users are advised to upgrade. Users unable to upgrade should explicitly set `DockerSpawner.allowed_images` to a non-empty list containing only the default image will result in the intended default behavior.

    Published: 8 Dec 2023
    7.1
    High

    CVE-2023-49782

    Last Modified: 21 Nov 2024

    Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with `Collabora Online - Built-in CODE Server` app can be vulnerable to attack via proxy.php. The bug was fixed in Collabora Online - Built-in CODE Server (richdocumentscode) release 23.5.601. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 8 Dec 2023
    7.2
    High

    CVE-2023-49788

    Last Modified: 21 Nov 2024

    Collabora Online is a collaborative online office suite based on LibreOffice technology. Unlike a standalone dedicated Collabora Online server, the Built-in CODE Server (richdocumentscode) is run without chroot sandboxing. Vulnerable versions of the richdocumentscode app can be susceptible to attack via modified client->server commands to overwrite files outside the sub directory the server has provided for the transient session. Files which can be accessed are limited to those that the server process has access to. The bug was fixed in Collabora Online - Built-in CODE Server (richdocumentscode) release 23.5.602. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-6619

    Last Modified: 21 Nov 2024

    A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /modals/class_form.php. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-247256.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-6618

    Last Modified: 27 May 2025

    A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file index.php. The manipulation of the argument page leads to file inclusion. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247255.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-6617

    Last Modified: 21 Nov 2024

    A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been classified as critical. Affected is an unknown function of the file attendance.php. The manipulation of the argument class_id leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-247254 is the identifier assigned to this vulnerability.

    Published: 8 Dec 2023
    3.5
    Low

    CVE-2023-6616

    Last Modified: 21 Nov 2024

    A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. This issue affects some unknown processing of the file index.php. The manipulation of the argument page leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-247253 was assigned to this vulnerability.

    Published: 8 Dec 2023
    3.5
    Low

    CVE-2023-6615

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some unknown functionality of the file /admin/manage-users.php. The manipulation of the argument page leads to information disclosure. The exploit has been disclosed to the public and may be used. VDB-247250 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Dec 2023
    4.5
    Medium

    CVE-2023-32968

    Last Modified: 21 Nov 2024

    A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2514 build 20230906 and later QTS 5.1.2.2533 build 20230926 and later QuTS hero h5.0.1.2515 build 20230907 and later QuTS hero h5.1.2.2534 build 20230927 and later

    Published: 8 Dec 2023
    6.5
    Medium

    CVE-2023-23372

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to inject malicious code via a network. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2425 build 20230609 and later QTS 5.1.0.2444 build 20230629 and later QTS 4.5.4.2467 build 20230718 and later QuTS hero h5.1.0.2424 build 20230609 and later QuTS hero h5.0.1.2515 build 20230907 and later QuTS hero h4.5.4.2476 build 20230728 and later

    Published: 8 Dec 2023
    4.9
    Medium

    CVE-2023-32975

    Last Modified: 27 May 2025

    A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2514 build 20230906 and later QTS 5.1.2.2533 build 20230926 and later QuTS hero h5.0.1.2515 build 20230907 and later QuTS hero h5.1.2.2534 build 20230927 and later

    Published: 8 Dec 2023
    8
    High

    CVE-2023-47565

    Last Modified: 26 Feb 2026

    An OS command injection vulnerability has been found to affect legacy QNAP VioStor NVR models running QVR Firmware 4.x. If exploited, the vulnerability could allow authenticated users to execute commands via a network. We have already fixed the vulnerability in the following versions: QVR Firmware 5.0.0 and later

    Published: 8 Dec 2023
    2.7
    Low

    CVE-2023-6614

    Last Modified: 21 Nov 2024

    A vulnerability classified as problematic was found in Typecho 1.2.1. Affected by this vulnerability is an unknown functionality of the file /admin/manage-pages.php of the component Page Handler. The manipulation leads to backdoor. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-247249 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 8 Dec 2023
    9.8
    Critical

    CVE-2023-48423

    Last Modified: 21 Nov 2024

    In dhcp4_SetPDNAddress of dhcp4_Main.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48422

    Last Modified: 21 Nov 2024

    In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.8
    High

    CVE-2023-48421

    Last Modified: 27 May 2025

    In gpu_pixel_handle_buffer_liveness_update_ioctl of private/google-modules/gpu/mali_kbase/platform/pixel/pixel_gpu_slc.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    6.4
    Medium

    CVE-2023-48420

    Last Modified: 21 Nov 2024

    there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.5
    High

    CVE-2023-48416

    Last Modified: 21 Nov 2024

    In multiple locations, there is a possible null dereference due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48415

    Last Modified: 21 Nov 2024

    In Init of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    6.7
    Medium

    CVE-2023-48414

    Last Modified: 21 Nov 2024

    In the Pixel Camera Driver, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    4.9
    Medium

    CVE-2023-48413

    Last Modified: 21 Nov 2024

    In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48412

    Last Modified: 2 Dec 2024

    In private_handle_t of mali_gralloc_buffer.h, there is a possible information leak due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48411

    Last Modified: 21 Nov 2024

    In SignalStrengthAdapter::FillGsmSignalStrength() of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.5
    High

    CVE-2023-48410

    Last Modified: 21 Nov 2024

    In cd_ParseMsg of cd_codec.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.8
    High

    CVE-2023-48409

    Last Modified: 21 Nov 2024

    In gpu_pixel_handle_buffer_liveness_update_ioctl of private/google-modules/gpu/mali_kbase/mali_kbase_core_linux.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48408

    Last Modified: 21 Nov 2024

    In ProtocolNetSimFileInfoAdapter() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.8
    High

    CVE-2023-48407

    Last Modified: 21 Nov 2024

    there is a possible DCK won't be deleted after factory reset due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    6.7
    Medium

    CVE-2023-48406

    Last Modified: 21 Nov 2024

    there is a possible permanent DoS or way for the modem to boot unverified firmware due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    6.7
    Medium

    CVE-2023-48405

    Last Modified: 21 Nov 2024

    there is a possible way for the secure world to write to NS memory due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.5
    High

    CVE-2023-48404

    Last Modified: 21 Nov 2024

    In ProtocolMiscCarrierConfigSimInfoIndAdapter of protocolmiscadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.5
    High

    CVE-2023-48403

    Last Modified: 21 Nov 2024

    In sms_DecodeCodedTpMsg of sms_PduCodec.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure if the attacker is able to observe the behavior of the subsequent switch conditional with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    7.8
    High

    CVE-2023-48402

    Last Modified: 21 Nov 2024

    In ppcfw_enable of ppcfw.c, there is a possible EoP due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023
    5.5
    Medium

    CVE-2023-48401

    Last Modified: 21 Nov 2024

    In GetSizeOfEenlRecords of protocoladapter.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 8 Dec 2023