CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2023-21315

    Last Modified: 21 Nov 2024

    In Bluetooth, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    4.4
    Medium

    CVE-2023-21314

    Last Modified: 21 Nov 2024

    In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    7.8
    High

    CVE-2023-21313

    Last Modified: 21 Nov 2024

    In Core, there is a possible way to forward calls without user knowledge due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21312

    Last Modified: 21 Nov 2024

    In IntentResolver, there is a possible cross-user media read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21311

    Last Modified: 21 Nov 2024

    In Settings, there is a possible way to control private DNS settings from a secondary user due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    6.7
    Medium

    CVE-2023-21310

    Last Modified: 21 Nov 2024

    In Bluetooth, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21309

    Last Modified: 21 Nov 2024

    In libcore, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21308

    Last Modified: 21 Nov 2024

    In Composer, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5
    Medium

    CVE-2023-21307

    Last Modified: 21 Nov 2024

    In Bluetooth, there is a possible way for a paired Bluetooth device to access a long term identifier for an Android device due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21306

    Last Modified: 21 Nov 2024

    In ContentService, there is a possible way to read installed sync content providers due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21305

    Last Modified: 21 Nov 2024

    In Content, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21304

    Last Modified: 21 Nov 2024

    In Content Service, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21303

    Last Modified: 21 Nov 2024

    In Content, here is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21302

    Last Modified: 21 Nov 2024

    In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21301

    Last Modified: 21 Nov 2024

    In ActivityManagerService, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21300

    Last Modified: 21 Nov 2024

    In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21299

    Last Modified: 21 Nov 2024

    In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    7.8
    High

    CVE-2023-21298

    Last Modified: 21 Nov 2024

    In Slice, there is a possible disclosure of installed applications due to side channel information disclosure. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    4.4
    Medium

    CVE-2023-21297

    Last Modified: 21 Nov 2024

    In SEPolicy, there is a possible way to access the factory MAC address due to a permissions bypass. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    6.1
    Medium

    CVE-2023-36920

    Last Modified: 21 Nov 2024

    In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X-FRAME-OPTIONS response header is not implemented, allowing an unauthenticated attacker to attempt clickjacking, which could result in disclosure or modification of information.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21296

    Last Modified: 21 Nov 2024

    In Permission, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21295

    Last Modified: 21 Nov 2024

    In SliceManagerService, there is a possible way to check if a content provider is installed due to a missing null check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21294

    Last Modified: 21 Nov 2024

    In Slice, there is a possible disclosure of installed packages due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-21293

    Last Modified: 21 Nov 2024

    In PackageManagerNative, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2022-20264

    Last Modified: 21 Nov 2024

    In Usage Stats Service, there is a possible way to determine whether an app is installed, without query permissions due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    7.8
    High

    CVE-2021-39810

    Last Modified: 30 Sept 2025

    In verifyDefaults of CardEmulationManager.java, there is a possible way to set a third party app as the default contactless payment app without user consent due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 30 Oct 2023
    5.5
    Medium

    CVE-2023-44323

    Last Modified: 21 Nov 2024

    Adobe Acrobat for Edge version 118.0.2088.46 (and earlier) is affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 30 Oct 2023
    6.7
    Medium

    CVE-2022-4575

    Last Modified: 21 Nov 2024

    A vulnerability due to improper write protection of UEFI variables was reported in the BIOS of some ThinkPad models could allow an attacker with physical or local access and elevated privileges the ability to bypass Secure Boot.

    Published: 30 Oct 2023
    6.7
    Medium

    CVE-2022-48189

    Last Modified: 21 Nov 2024

    An SMM driver input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.

    Published: 30 Oct 2023
    6.7
    Medium

    CVE-2022-4574

    Last Modified: 21 Nov 2024

    An SMI handler input validation vulnerability in the BIOS of some ThinkPad models could allow an attacker with local access and elevated privileges to execute arbitrary code.  

    Published: 30 Oct 2023
    6.7
    Medium

    CVE-2022-4573

    Last Modified: 21 Nov 2024

    An SMI handler input validation vulnerability in the ThinkPad X1 Fold Gen 1 could allow an attacker with local access and elevated privileges to execute arbitrary code.

    Published: 30 Oct 2023
    8.2
    High

    CVE-2023-4964

    Last Modified: 21 Nov 2024

    Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 2020.11, 2021.02, 2021.05, 2021.08, 2021.11, 2022.05, 2022.11 and opentext Asset Management X (AMX) versions 2021.08, 2021.11, 2022.05, 2022.11. The vulnerability could allow attackers to redirect a user to malicious websites.

    Published: 30 Oct 2023
    5.4
    Medium

    CVE-2023-5251

    Last Modified: 8 Apr 2026

    The Grid Plus plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'grid_plus_save_layout_callback' and 'grid_plus_delete_callback' functions in versions up to, and including, 1.3.2. This makes it possible for authenticated attackers with subscriber privileges or above, to add, update or delete grid layout. CVE-2023-34014 appears to be a duplicate of this issue.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5362

    Last Modified: 8 Apr 2026

    The Carousel, Recent Post Slider and Banner Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'spice_post_slider' shortcode in versions up to, and including, 2.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5335

    Last Modified: 8 Apr 2026

    The Buzzsprout Podcasting plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'buzzsprout' shortcode in versions up to, and including, 1.8.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5666

    Last Modified: 8 Apr 2026

    The Accordion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tcpaccordion' shortcode in all versions up to, and including, 2.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5049

    Last Modified: 8 Apr 2026

    The Giveaways and Contests by RafflePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rafflepress' and 'rafflepress_gutenberg' shortcode in versions up to, and including, 1.12.0 due to insufficient input sanitization and output escaping on 'giframe' user supplied attribute. This makes it possible for authenticated attackers with contributor level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    8.8
    High

    CVE-2023-5250

    Last Modified: 8 Apr 2026

    The Grid Plus plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.3 via a shortcode attribute. This allows subscriber-level, and above, attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where PHP files with arbitrary content can be uploaded and included.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5566

    Last Modified: 8 Apr 2026

    The Simple Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 1.0.20 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    9.9
    Critical

    CVE-2023-5199

    Last Modified: 8 Apr 2026

    The PHP to Page plugin for WordPress is vulnerable Local File Inclusion to Remote Code Execution in versions up to, and including, 0.3 via the 'php-to-page' shortcode. This allows authenticated attackers with subscriber-level permissions or above, to include local file and potentially execute code on the server. While subscribers may need to poison log files or otherwise get a file installed in order to achieve remote code execution, author and above users can upload files by default and achieve remote code execution easily.

    Published: 30 Oct 2023
    9
    Critical

    CVE-2023-5843

    Last Modified: 8 Apr 2026

    The Ads by datafeedr.com plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 1.1.3 via the 'dfads_ajax_load_ads' function. This allows unauthenticated attackers to execute code on the server. The parameters of the callable function are limited, they cannot be specified arbitrarily.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5164

    Last Modified: 8 Apr 2026

    The Bellows Accordion Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 1.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5565

    Last Modified: 8 Apr 2026

    The Shortcode Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'shortmenu' shortcode in versions up to, and including, 3.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    6.4
    Medium

    CVE-2023-5252

    Last Modified: 8 Apr 2026

    The FareHarbor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.6.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 30 Oct 2023
    8.8
    High

    CVE-2023-5315

    Last Modified: 8 Apr 2026

    The Google Maps made Simple plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to, and including, 0.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers with subscriber-level and above permissions to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 30 Oct 2023
    8.8
    High

    CVE-2023-5583

    Last Modified: 8 Apr 2026

    The WP Simple Galleries plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.34 via deserialization of untrusted input from the 'wpsimplegallery_gallery' post meta via 'wpsgallery' shortcode. This allows authenticated attackers, with contributor-level permissions and above, to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.

    Published: 30 Oct 2023
    8.8
    High

    CVE-2023-5833

    Last Modified: 21 Nov 2024

    Improper Access Control in GitHub repository mintplex-labs/anything-llm prior to 0.1.0.

    Published: 30 Oct 2023
    9.1
    Critical

    CVE-2023-5832

    Last Modified: 21 Nov 2024

    Improper Input Validation in GitHub repository mintplex-labs/anything-llm prior to 0.1.0.

    Published: 30 Oct 2023
    2.1
    Low

    CVE-2023-42431

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) vulnerability in BlueSpiceAvatars extension of BlueSpice allows logged in user to inject arbitrary HTML into the profile image dialog on Special:Preferences. This only applies to the genuine user context.

    Published: 30 Oct 2023
    7.2
    High

    CVE-2023-5844

    Last Modified: 28 Nov 2025

    Unverified Password Change in GitHub repository pimcore/admin-ui-classic-bundle prior to 1.2.0.

    Published: 30 Oct 2023