CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2023-41998

    Last Modified: 21 Nov 2024

    Arcserve UDP prior to 9.2 contained a vulnerability in the com.ca.arcflash.rps.webservice.RPSService4CPMImpl interface. A routine exists that allows an attacker to upload and execute arbitrary files.

    Published: 27 Nov 2023
    9.8
    Critical

    CVE-2023-6329

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability exists in Control iD iDSecure v4.7.32.0. The login routine used by iDS-Core.dll contains a "passwordCustom" option that allows an unauthenticated attacker to compute valid credentials that can be used to bypass authentication and act as an administrative user.

    Published: 27 Nov 2023
    5.4
    Medium

    CVE-2023-5620

    Last Modified: 21 Nov 2024

    The Web Push Notifications WordPress plugin before 4.35.0 does not prevent visitors on the site from changing some of the plugin options, some of which may be used to conduct Stored XSS attacks.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-5525

    Last Modified: 21 Nov 2024

    The Limit Login Attempts Reloaded WordPress plugin before 2.25.26 is missing authorization on the `toggle_auto_update` AJAX action, allowing any user with a valid nonce to toggle the auto-update status of the plugin.

    Published: 27 Nov 2023
    6.1
    Medium

    CVE-2023-5641

    Last Modified: 21 Nov 2024

    The Martins Free & Easy SEO BackLink Link Building Network WordPress plugin before 1.2.30 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 27 Nov 2023
    9.1
    Critical

    CVE-2023-5559

    Last Modified: 21 Nov 2024

    The 10Web Booster WordPress plugin before 2.24.18 does not validate the option name given to some AJAX actions, allowing unauthenticated users to delete arbitrary options from the database, leading to denial of service.

    Published: 27 Nov 2023
    5.3
    Medium

    CVE-2023-5611

    Last Modified: 16 Jan 2025

    The Seraphinite Accelerator WordPress plugin before 2.20.32 does not have authorisation and CSRF checks when resetting and importing its settings, allowing unauthenticated users to reset them

    Published: 27 Nov 2023
    4.8
    Medium

    CVE-2023-2707

    Last Modified: 5 Jun 2025

    The gAppointments WordPress plugin through 1.9.5.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 27 Nov 2023
    5.4
    Medium

    CVE-2023-5942

    Last Modified: 5 Jun 2025

    The Medialist WordPress plugin before 1.4.1 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

    Published: 27 Nov 2023
    5.4
    Medium

    CVE-2023-5738

    Last Modified: 21 Nov 2024

    The WordPress Backup & Migration WordPress plugin before 1.4.4 does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Cross-Site Scripting attacks.

    Published: 27 Nov 2023
    5.4
    Medium

    CVE-2023-4514

    Last Modified: 21 Nov 2024

    The Mmm Simple File List WordPress plugin through 2.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

    Published: 27 Nov 2023
    6.1
    Medium

    CVE-2023-5958

    Last Modified: 4 Jun 2025

    The POST SMTP Mailer WordPress plugin before 2.7.1 does not escape email message content before displaying it in the backend, allowing an unauthenticated attacker to perform XSS attacks against highly privileged users.

    Published: 27 Nov 2023
    9.8
    Critical

    CVE-2023-4922

    Last Modified: 21 Nov 2024

    The WPB Show Core WordPress plugin through 2.2 is vulnerable to a local file inclusion via the `path` parameter.

    Published: 27 Nov 2023
    6.1
    Medium

    CVE-2023-5325

    Last Modified: 21 Nov 2024

    The Woocommerce Vietnam Checkout WordPress plugin before 2.0.6 does not escape the custom shipping phone field no the checkout form leading to XSS

    Published: 27 Nov 2023
    9.8
    Critical

    CVE-2023-5974

    Last Modified: 21 Nov 2024

    The WPB Show Core WordPress plugin through 2.2 is vulnerable to server-side request forgery (SSRF) via the `path` parameter.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-5737

    Last Modified: 21 Nov 2024

    The WordPress Backup & Migration WordPress plugin before 1.4.4 does not authorize some AJAX requests, allowing users with a role as low as Subscriber to update some plugin settings.

    Published: 27 Nov 2023
    5.3
    Medium

    CVE-2023-5845

    Last Modified: 21 Nov 2024

    The Simple Social Media Share Buttons WordPress plugin before 5.1.1 leaks password-protected post content to unauthenticated visitors in some meta tags

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-4297

    Last Modified: 5 Jun 2025

    The Mmm Simple File List WordPress plugin through 2.3 does not validate the generated path to list files from, allowing any authenticated users, such as subscribers, to list the content of arbitrary directories.

    Published: 27 Nov 2023
    6.1
    Medium

    CVE-2023-5653

    Last Modified: 21 Nov 2024

    The WassUp Real Time Analytics WordPress plugin through 1.9.4.5 does not escape IP address provided via some headers before outputting them back in an admin page, allowing unauthenticated users to perform Stored XSS attacks against logged in admins

    Published: 27 Nov 2023
    9.8
    Critical

    CVE-2023-5604

    Last Modified: 5 Jun 2025

    The Asgaros Forum WordPress plugin before 2.7.1 allows forum administrators, who may not be WordPress (super-)administrators, to set insecure configuration that allows unauthenticated users to upload dangerous files (e.g. .php, .phtml), potentially leading to remote code execution.

    Published: 27 Nov 2023
    7.5
    High

    CVE-2023-5239

    Last Modified: 21 Nov 2024

    The Security & Malware scan by CleanTalk WordPress plugin before 2.121 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to bypass bruteforce protection.

    Published: 27 Nov 2023
    6.1
    Medium

    CVE-2023-5560

    Last Modified: 21 Nov 2024

    The WP-UserOnline WordPress plugin before 2.88.3 does not sanitise and escape the X-Forwarded-For header before outputting its content on the page, which allows unauthenticated users to perform Cross-Site Scripting attacks.

    Published: 27 Nov 2023
    5.3
    Medium

    CVE-2023-4252

    Last Modified: 21 Nov 2024

    The EventPrime WordPress plugin through 3.2.9 specifies the price of a booking in the client request, allowing an attacker to purchase bookings without payment.

    Published: 27 Nov 2023
    7.5
    High

    CVE-2023-5906

    Last Modified: 21 Nov 2024

    The Job Manager & Career WordPress plugin before 1.4.4 contains a vulnerability in the Directory Listings system, which allows an unauthorized user to view and download private files of other users. This vulnerability poses a serious security threat because it allows an attacker to gain access to confidential data and files of other users without their permission.

    Published: 27 Nov 2023
    4.8
    Medium

    CVE-2023-5209

    Last Modified: 21 Nov 2024

    The WordPress Online Booking and Scheduling Plugin WordPress plugin before 22.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 27 Nov 2023
    5.9
    Medium

    CVE-2023-4642

    Last Modified: 21 Nov 2024

    The kk Star Ratings WordPress plugin before 5.4.6 does not implement atomic operations, allowing one user vote multiple times on a poll due to a Race Condition.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-31275

    Last Modified: 25 Feb 2026

    An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elements in an Excel file. A specially crafted malformed file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-39542

    Last Modified: 4 Nov 2025

    A code execution vulnerability exists in the Javascript saveAs API of Foxit Reader 12.1.3.15356. A specially crafted malformed file can create arbitrary files, which can lead to remote code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-40194

    Last Modified: 4 Nov 2025

    An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to mistreatment of whitespace characters. A specially crafted malicious file can create files at arbitrary locations, which can lead to arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-35985

    Last Modified: 4 Nov 2025

    An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to a failure to properly validate a dangerous extension. A specially crafted malicious file can create files at arbitrary locations, which can lead to arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially-crafted malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-32616

    Last Modified: 4 Nov 2025

    A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles 3D annotations. A specially crafted Javascript code inside a malicious PDF document can trigger reuse of a previously freed object, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-41257

    Last Modified: 4 Nov 2025

    A type confusion vulnerability exists in the way Foxit Reader 12.1.2.15356 handles field value properties. A specially crafted Javascript code inside a malicious PDF document can trigger this vulnerability, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    8.8
    High

    CVE-2023-38573

    Last Modified: 4 Nov 2025

    A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles a signature field. A specially crafted Javascript code inside a malicious PDF document can trigger reuse of a previously freed object, which can lead to memory corruption and result in arbitrary code execution. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 27 Nov 2023
    6.3
    Medium

    CVE-2023-4931

    Last Modified: 21 Nov 2024

    Uncontrolled search path element vulnerability in Plesk Installer affects version 3.27.0.0. A local attacker could execute arbitrary code by injecting DLL files into the same folder where the application is installed, resulting in DLL hijacking in edputil.dll, samlib.dll, urlmon.dll, sspicli.dll, propsys.dll and profapi.dll files.

    Published: 27 Nov 2023
    —
    Unknown

    CVE-2024-0070

    Last Modified: 28 Nov 2023

    This CVE ID was unused by the CNA.

    Published: 27 Nov 2023
    —
    Unknown

    CVE-2024-0069

    Last Modified: 28 Nov 2023

    This CVE ID was unused by the CNA.

    Published: 27 Nov 2023
    3.3
    Low

    CVE-2023-6287

    Last Modified: 21 Nov 2024

    Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.8 allows local attacker to retrieve passwords via reading log files.

    Published: 27 Nov 2023
    7.3
    High

    CVE-2023-4590

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0. This vulnerability could allow an attacker to execute arbitrary code via a long filename argument through the Structured Exception Handler (SEH) registers.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-43701

    Last Modified: 21 Nov 2024

    Improper payload validation and an improper REST API response type, made it possible for an authenticated malicious actor to store malicious code into Chart's metadata, this code could get executed if a user specifically accesses a specific deprecated API endpoint. This issue affects Apache Superset versions prior to 2.1.2.  Users are recommended to upgrade to version 2.1.2, which fixes this issue.

    Published: 27 Nov 2023
    8.4
    High

    CVE-2023-5607

    Last Modified: 21 Nov 2024

    An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extension, for on-premises ePO servers, prior to version 8.4.0 could lead to an authorised administrator attacker executing arbitrary code through uploading a specially crafted GTI reputation file. The attacker would need the appropriate privileges to access the relevant section of the User Interface. The import logic has been updated to restrict file types and content.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-42501

    Last Modified: 5 Jun 2025

    Unnecessary read permissions within the Gamma role would allow authenticated users to read configured CSS templates and annotations. This issue affects Apache Superset: before 2.1.2. Users should upgrade to version or above 2.1.2 and run `superset init` to reconstruct the Gamma role or remove `can_read` permission from the mentioned resources.

    Published: 27 Nov 2023
    6.3
    Medium

    CVE-2023-40610

    Last Modified: 3 Jun 2025

    Improper authorization check and possible privilege escalation on Apache Superset up to but excluding 2.1.2. Using the default examples database connection that allows access to both the examples schema and Apache Superset's metadata database, an attacker using a specially crafted CTE SQL statement could change data on the metadata database. This weakness could result on tampering with the authentication/authorization data.

    Published: 27 Nov 2023
    7.5
    High

    CVE-2023-49068

    Last Modified: 21 Nov 2024

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler.This issue affects Apache DolphinScheduler: before 3.2.1. Users are recommended to upgrade to version 3.2.1, which fixes the issue. At the time of disclosure of this advisory, this version has not yet been released. In the mean time, we recommend you make sure the logs are only available to trusted operators.

    Published: 27 Nov 2023
    8.1
    High

    CVE-2023-6254

    Last Modified: 21 Nov 2024

    A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text passwords which are send back to the client in the server response- This issue affects OTRS: from 8.0.X through 8.0.37.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-47168

    Last Modified: 2 Dec 2024

    Mattermost fails to properly check a redirect URL parameter allowing for an open redirect was possible when the user clicked "Back to Mattermost" after providing a invalid custom url scheme in /oauth/{service}/mobile_login?redirect_to=

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-6202

    Last Modified: 21 Nov 2024

    Mattermost fails to perform proper authorization in the /plugins/focalboard/api/v2/users endpoint allowing an attacker who is a guest user and knows the ID of another user to get their information (e.g. name, surname, nickname) via Mattermost Boards.

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-43754

    Last Modified: 21 Nov 2024

    Mattermost fails to check whether the  “Allow users to view archived channels”  setting is enabled during permalink previews display, allowing members to view permalink previews of archived channels even if the “Allow users to view archived channels” setting is disabled. 

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-48369

    Last Modified: 21 Nov 2024

    Mattermost fails to limit the log size of server logs allowing an attacker sending specially crafted requests to different endpoints to potentially overflow the log.

    Published: 27 Nov 2023
    3.1
    Low

    CVE-2023-35075

    Last Modified: 3 Jun 2025

    Mattermost fails to use  innerText / textContent when setting the channel name in the webapp during autocomplete, allowing an attacker to inject HTML to a victim's page by create a channel name that is valid HTML. No XSS is possible though. 

    Published: 27 Nov 2023
    4.3
    Medium

    CVE-2023-40703

    Last Modified: 3 Jun 2025

    Mattermost fails to properly limit the characters allowed in different fields of a block in Mattermost Boards allowing a attacker to consume excessive resources, possibly leading to Denial of Service, by patching the field of a block using a specially crafted string. 

    Published: 27 Nov 2023