CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2023-46998

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through 6.0 allows a remote attacker to execute arbitrary code via a crafted payload to alert(), confirm(), prompt() functions.

    Published: 7 Nov 2023
    9.1
    Critical

    CVE-2023-47456

    Last Modified: 21 Nov 2024

    Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.

    Published: 7 Nov 2023
    5.3
    Medium

    CVE-2023-47102

    Last Modified: 29 Sept 2025

    UrBackup Server 2.5.31 allows brute-force enumeration of user accounts because a failure message confirms that a username is not valid.

    Published: 7 Nov 2023
    9.8
    Critical

    CVE-2023-33478

    Last Modified: 21 Nov 2024

    RemoteClinic 2.0 has a SQL injection vulnerability in the ID parameter of /medicines/stocks.php.

    Published: 7 Nov 2023
    9.8
    Critical

    CVE-2023-33479

    Last Modified: 21 Nov 2024

    RemoteClinic version 2.0 contains a SQL injection vulnerability in the /staff/edit.php file.

    Published: 7 Nov 2023
    6.5
    Medium

    CVE-2023-36409

    Last Modified: 14 Apr 2025

    Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

    Published: 6 Nov 2023
    4.6
    Medium

    CVE-2023-36769

    Last Modified: 10 Aug 2026

    Microsoft OneNote Spoofing Vulnerability

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-5605

    Last Modified: 21 Nov 2024

    The URL Shortify WordPress plugin before 1.7.9.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 6 Nov 2023
    8.1
    High

    CVE-2023-5355

    Last Modified: 24 Mar 2025

    The Awesome Support WordPress plugin before 6.1.5 does not sanitize file paths when deleting temporary attachment files, allowing a ticket submitter to delete arbitrary files on the server.

    Published: 6 Nov 2023
    9.8
    Critical

    CVE-2023-5601

    Last Modified: 25 Mar 2025

    The WooCommerce Ninja Forms Product Add-ons WordPress plugin before 1.7.1 does not validate the file to be uploaded, allowing any unauthenticated users to upload arbitrary files to the server, leading to RCE.

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-5530

    Last Modified: 21 Nov 2024

    The Ninja Forms Contact Form WordPress plugin before 3.6.34 does not sanitize and escape its label fields, which could allow high privilege users such as admin to perform Stored XSS attacks. Only users with the unfiltered_html capability can perform this, and such users are already allowed to use JS in posts/comments etc however the vendor acknowledged and fixed the issue

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-5181

    Last Modified: 26 Feb 2025

    The WP Discord Invite WordPress plugin before 2.5.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-4858

    Last Modified: 26 Feb 2025

    The Simple Table Manager WordPress plugin through 1.5.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-4810

    Last Modified: 26 Feb 2025

    The Responsive Pricing Table WordPress plugin before 5.1.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 6 Nov 2023
    6.5
    Medium

    CVE-2023-4930

    Last Modified: 26 Feb 2025

    The Front End PM WordPress plugin before 11.4.3 does not block listing the contents of the directories where it stores attachments to private messages, allowing unauthenticated visitors to list and download private attachments if the autoindex feature of the web server is enabled.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-5352

    Last Modified: 26 Feb 2025

    The Awesome Support WordPress plugin before 6.1.5 does not correctly authorize the wpas_edit_reply function, allowing users to edit posts for which they do not have permission.

    Published: 6 Nov 2023
    4.8
    Medium

    CVE-2023-5228

    Last Modified: 26 Feb 2025

    The User Registration WordPress plugin before 3.0.4.2 does not sanitize and escape some of its settings, which could allow high-privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 6 Nov 2023
    7.2
    High

    CVE-2023-5082

    Last Modified: 26 Feb 2025

    The History Log by click5 WordPress plugin before 1.0.13 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by admin users when using the Smash Balloon Social Photo Feed plugin alongside it.

    Published: 6 Nov 2023
    6.1
    Medium

    CVE-2023-5354

    Last Modified: 26 Feb 2025

    The Awesome Support WordPress plugin before 6.1.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.

    Published: 6 Nov 2023
    7.5
    High

    CVE-2023-5454

    Last Modified: 26 Feb 2025

    The Templately WordPress plugin before 2.2.6 does not properly authorize the `saved-templates/delete` REST API call, allowing unauthenticated users to delete arbitrary posts.

    Published: 6 Nov 2023
    6.1
    Medium

    CVE-2023-5771

    Last Modified: 21 Nov 2024

    Proofpoint Enterprise Protection contains a stored XSS vulnerability in the AdminUI. An unauthenticated attacker can send a specially crafted email with HTML in the subject which triggers XSS when viewing quarantined messages.  This issue affects Proofpoint Enterprise Protection: from 8.20.0 before patch 4796, from 8.18.6 before patch 4795 and all other prior versions.

    Published: 6 Nov 2023
    8.8
    High

    CVE-2023-5719

    Last Modified: 16 Jan 2025

    The Crimson 3.2 Windows-based configuration tool allows users with administrative access to define new passwords for users and to download the resulting security configuration to a device. If such a password contains the percent (%) character, invalid values will be included, potentially truncating the string if a NUL is encountered. If the simplified password is not detected by the administrator, the device might be left in a vulnerable state as a result of more-easily compromised credentials. Note that passwords entered via the Crimson system web server do not suffer from this vulnerability.

    Published: 6 Nov 2023
    9.8
    Critical

    CVE-2023-5777

    Last Modified: 16 Jan 2025

    Weintek EasyBuilder Pro contains a vulnerability that, even when the private key is immediately deleted after the crash report transmission is finished, the private key is exposed to the public, which could result in obtaining remote control of the crash report server.

    Published: 6 Nov 2023
    10
    Critical

    CVE-2023-46731

    Last Modified: 21 Nov 2024

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki doesn't properly escape the section URL parameter that is used in the code for displaying administration sections. This allows any user with read access to the document `XWiki.AdminSheet` (by default, everyone including unauthenticated users) to execute code including Groovy code. This impacts the confidentiality, integrity and availability of the whole XWiki instance. This vulnerability has been patched in XWiki 14.10.14, 15.6 RC1 and 15.5.1. Users are advised to upgrade. Users unablr to upgrade may apply the fix in commit `fec8e0e53f9` manually. Alternatively, to protect against attacks from unauthenticated users, view right for guests can be removed from this document (it is only needed for space and wiki admins).

    Published: 6 Nov 2023
    9.6
    Critical

    CVE-2023-46732

    Last Modified: 21 Nov 2024

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki is vulnerable to reflected cross-site scripting (RXSS) via the `rev` parameter that is used in the content of the content menu without escaping. If an attacker can convince a user to visit a link with a crafted parameter, this allows the attacker to execute arbitrary actions in the name of the user, including remote code (Groovy) execution in the case of a user with programming right, compromising the confidentiality, integrity and availability of the whole XWiki installation. This has been patched in XWiki 15.6 RC1, 15.5.1 and 14.10.14. The patch in commit `04e325d57` can be manually applied without upgrading (or restarting) the instance. Users are advised to upgrade or to manually apply the patch. There are no known workarounds for this vulnerability.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-46254

    Last Modified: 21 Nov 2024

    capsule-proxy is a reverse proxy for Capsule kubernetes multi-tenancy framework. A bug in the RoleBinding reflector used by `capsule-proxy` gives ServiceAccount tenant owners the right to list Namespaces of other tenants backed by the same owner kind and name. For example consider two tenants `solar` and `wind`. Tenant `solar`, owned by a ServiceAccount named `tenant-owner` in the Namespace `solar`. Tenant `wind`, owned by a ServiceAccount named `tenant-owner` in the Namespace `wind`. The Tenant owner `solar` would be able to list the namespaces of the Tenant `wind` and vice-versa, although this is not correct. The bug introduces an exfiltration vulnerability since allows the listing of Namespace resources of other Tenants, although just in some specific conditions: 1. `capsule-proxy` runs with the `--disable-caching=false` (default value: `false`) and 2. Tenant owners are ServiceAccount, with the same resource name, but in different Namespaces. This vulnerability doesn't allow any privilege escalation on the outer tenant Namespace-scoped resources, since the Kubernetes RBAC is enforcing this. This issue has been addressed in version 0.4.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 6 Nov 2023
    7.6
    High

    CVE-2023-39345

    Last Modified: 21 Nov 2024

    strapi is an open-source headless CMS. Versions prior to 4.13.1 did not properly restrict write access to fielded marked as private in the user registration endpoint. As such malicious users may be able to errantly modify their user records. This issue has been addressed in version 4.13.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 6 Nov 2023
    7.5
    High

    CVE-2023-46251

    Last Modified: 21 Nov 2024

    MyBB is a free and open source forum software. Custom MyCode (BBCode) for the visual editor (_SCEditor_) doesn't escape input properly when rendering HTML, resulting in a DOM-based XSS vulnerability. This weakness can be exploited by pointing a victim to a page where the visual editor is active (e.g. as a post or Private Message) and operates on a maliciously crafted MyCode message. This may occur on pages where message content is pre-filled using a GET/POST parameter, or on reply pages where a previously saved malicious message is quoted. The impact is be mitigated when: 1. the visual editor is disabled globally (_Admin CP → Configuration → Settings → Clickable Smilies and BB Code: [Clickable MyCode Editor](https://github.com/mybb/mybb/blob/mybb_1836/install/resources/settings.xml#L2087-L2094)_ is set to _Off_), or 2. the visual editor is disabled for individual user accounts (_User CP → Your Profile → Edit Options_: _Show the MyCode formatting options on the posting pages_ checkbox is not checked). MyBB 1.8.37 resolves this issue with the commit `6dcaf0b4d`. Users are advised to upgrade. Users unable to upgrade may mitigate the impact without upgrading MyBB by changing the following setting (_Admin CP → Configuration → Settings_): - _Clickable Smilies and BB Code → [Clickable MyCode Editor](https://github.com/mybb/mybb/blob/mybb_1836/install/resources/settings.xml#L2087-L2094)_: _Off_. Similarly, individual MyBB forum users are able to disable the visual editor by diabling the account option (_User CP → Your Profile → Edit Options_) _Show the MyCode formatting options on the posting pages_.

    Published: 6 Nov 2023
    3.5
    Low

    CVE-2023-4700

    Last Modified: 20 Nov 2025

    An authorization issue affecting GitLab EE affecting all versions from 14.7 prior to 16.3.6, 16.4 prior to 16.4.2, and 16.5 prior to 16.5.1, allowed a user to run jobs in protected environments, bypassing any required approvals.

    Published: 6 Nov 2023
    7.3
    High

    CVE-2023-45827

    Last Modified: 21 Nov 2024

    Dot diver is a lightweight, powerful, and dependency-free TypeScript utility library that provides types and functions to work with object paths in dot notation. In versions prior to 1.0.2 there is a Prototype Pollution vulnerability in the `setByPath` function which can leads to remote code execution (RCE). This issue has been addressed in commit `98daf567` which has been included in release 1.0.2. Users are advised to upgrade. There are no known workarounds to this vulnerability.

    Published: 6 Nov 2023
    5.3
    Medium

    CVE-2023-5969

    Last Modified: 21 Nov 2024

    Mattermost fails to properly sanitize the request to /api/v4/redirect_location allowing an attacker, sending a specially crafted request to /api/v4/redirect_location, to fill up the memory due to caching large items.

    Published: 6 Nov 2023
    4.9
    Medium

    CVE-2023-5968

    Last Modified: 21 Nov 2024

    Mattermost fails to properly sanitize the user object when updating the username, resulting in the password hash being included in the response body. 

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-5967

    Last Modified: 21 Nov 2024

    Mattermost fails to properly validate requests to the Calls plugin, allowing an attacker sending a request without a User Agent header to cause a panic and crash the Calls plugin

    Published: 6 Nov 2023
    7.5
    High

    CVE-2023-41378

    Last Modified: 21 Nov 2024

    In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico Enterprise Typha (v3.17.1, v3.16.3, v3.15.3 and below), a client TLS handshake can block the Calico Typha server indefinitely, resulting in denial of service. The TLS Handshake() call is performed inside the main server handle for loop without any timeout allowing an unclean TLS handshake to block the main loop indefinitely while other connections will be idle waiting for that handshake to finish.

    Published: 6 Nov 2023
    8.6
    High

    CVE-2023-5950

    Last Modified: 21 Nov 2024

    Rapid7 Velociraptor versions prior to 0.7.0-4 suffer from a reflected cross site scripting vulnerability. This vulnerability allows attackers to inject JS into the error path, potentially leading to unauthorized execution of scripts within a user's web browser. This vulnerability is fixed in version 0.7.0-04 and a patch is available to download. Patches are also available for version 0.6.9 (0.6.9-1).

    Published: 6 Nov 2023
    9.9
    Critical

    CVE-2023-5964

    Last Modified: 12 Jun 2025

    The 1E-Exchange-DisplayMessageinstruction that is part of the End-User Interaction product pack available on the 1E Exchange does not properly validate the Caption or Message parameters, which allows for a specially crafted input to perform arbitrary code execution with SYSTEM permissions. This instruction only runs on Windows clients. To remediate this issue DELETE the instruction “Show dialogue with caption %Caption% and message %Message%” from the list of instructions in the Settings UI, and replace it with the new instruction 1E-Exchange-ShowNotification instruction available in the updated End-User Interaction product pack. The new instruction should show as “Show %Type% type notification with header %Header% and message %Message%” with a version of 7.1 or above.

    Published: 6 Nov 2023
    9.9
    Critical

    CVE-2023-45163

    Last Modified: 18 Jun 2025

    The 1E-Exchange-CommandLinePing instruction that is part of the Network product pack available on the 1E Exchange does not properly validate the input parameter, which allows for a specially crafted input to perform arbitrary code execution with SYSTEM permissions. This instruction only runs on Windows clients. To remediate this issue download the updated Network product pack from the 1E Exchange and update the 1E-Exchange-CommandLinePing instruction to v18.1 by uploading it through the 1E Platform instruction upload UI

    Published: 6 Nov 2023
    3.1
    Low

    CVE-2023-5963

    Last Modified: 23 Apr 2026

    An issue has been discovered in GitLab EE with Advanced Search affecting all versions from 13.9 to 16.3.6, 16.4 prior to 16.4.2 and 16.5 prior to 16.5.1 that could allow a denial of service in the Advanced Search function by chaining too many syntax operators.

    Published: 6 Nov 2023
    9.9
    Critical

    CVE-2023-45161

    Last Modified: 18 Jun 2025

    The 1E-Exchange-URLResponseTime instruction that is part of the Network product pack available on the 1E Exchange does not properly validate the URL parameter, which allows for a specially crafted input to perform arbitrary code execution with SYSTEM permissions. This instruction only runs on Windows clients. To remediate this issue download the updated Network product pack from the 1E Exchange and update the 1E-Exchange-URLResponseTime instruction to v20.1 by uploading it through the 1E Platform instruction upload UI

    Published: 6 Nov 2023
    8.5
    High

    CVE-2023-3399

    Last Modified: 20 Nov 2025

    An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. It was possible for an unauthorised project or group member to read the CI/CD variables using the custom project templates.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-3909

    Last Modified: 20 Nov 2025

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.3 before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1. A Regular Expression Denial of Service was possible by adding a large string in timeout input in gitlab-ci.yml file.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-3246

    Last Modified: 20 Nov 2025

    An issue has been discovered in GitLab EE/CE affecting all versions starting before 16.3.6, all versions starting from 16.4 before 16.4.2, all versions starting from 16.5 before 16.5.1 which allows an attackers to block Sidekiq job processor.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-47186

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Kadence WP Kadence WooCommerce Email Designer plugin <= 1.5.11 versions.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-5823

    Last Modified: 29 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in ThemeKraft TK Google Fonts GDPR Compliant plugin <= 2.2.11 versions.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-46781

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Roland Murg Current Menu Item for Custom Post Types plugin <= 1.5 versions.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-46780

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Alter plugin <= 1.0 versions.

    Published: 6 Nov 2023
    5.4
    Medium

    CVE-2023-46779

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in EasyRecipe plugin <= 3.5.3251 versions.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-46778

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in TheFreeWindows Auto Limit Posts Reloaded plugin <= 2.5 versions.

    Published: 6 Nov 2023
    5.4
    Medium

    CVE-2023-46777

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Custom Login Page | Temporary Users | Rebrand Login | Login Captcha plugin <= 1.1.3 versions.

    Published: 6 Nov 2023
    4.3
    Medium

    CVE-2023-46776

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Serena Villa Auto Excerpt everywhere plugin <= 1.5 versions.

    Published: 6 Nov 2023