CVE Feed

    Dashboard / CVE

    5.9
    Medium

    CVE-2023-46088

    Last Modified: 19 Feb 2025

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Mammothology WP Full Stripe Free plugin <= 1.6.1 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46094

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Conversios Track Google Analytics 4, Facebook Pixel & Conversions API via Google Tag Manager for WooCommerce plugin <= 6.5.3 versions.

    Published: 26 Oct 2023
    5.9
    Medium

    CVE-2023-32116

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in TotalPress.Org Custom post types, Custom Fields & more plugin <= 4.0.12 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46081

    Last Modified: 28 Apr 2026

    Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Lavacode Lava Directory Manager plugin <= 1.1.34 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46077

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Arrow Plugins The Awesome Feed – Custom Feed plugin <= 2.2.5 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46076

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RedNao WooCommerce PDF Invoice Builder, Create invoices, packing slips and more plugin <= 1.2.102 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46075

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpdevart Contact Form Builder, Contact Widget plugin <= 2.1.6 versions.

    Published: 26 Oct 2023
    7.3
    High

    CVE-2023-5780

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical was found in Tongda OA 2017 11.10. This vulnerability affects unknown code of the file general/system/approve_center/flow_guide/flow_type/set_print/delete.php. The manipulation of the argument DELETE_STR leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-243586 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2023-30492

    Last Modified: 28 Apr 2026

    Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Vark Minimum Purchase for WooCommerce plugin <= 2.0.0.1 versions.

    Published: 26 Oct 2023
    5.8
    Medium

    CVE-2023-46074

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Borbis Media FreshMail For WordPress plugin <= 2.3.2 versions.

    Published: 26 Oct 2023
    4.3
    Medium

    CVE-2023-5802

    Last Modified: 19 Feb 2025

    Cross-Site Request Forgery (CSRF) vulnerability in Mihai Iova WordPress Knowledge base & Documentation Plugin – WP Knowledgebase plugin <= 1.3.4 versions.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-46072

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Michael Simpson Add Shortcodes Actions And Filters plugin <= 2.0.9 versions.

    Published: 26 Oct 2023
    8.8
    High

    CVE-2023-5798

    Last Modified: 23 Apr 2025

    The Assistant WordPress plugin before 1.4.4 does not validate a parameter before making a request to it via wp_remote_get(), which could allow users with a role as low as Editor to perform SSRF attacks

    Published: 26 Oct 2023
    4.4
    Medium

    CVE-2023-5139

    Last Modified: 13 Feb 2025

    Potential buffer overflow vulnerability at the following location in the Zephyr STM32 Crypto driver

    Published: 26 Oct 2023
    5.9
    Medium

    CVE-2023-31421

    Last Modified: 21 Nov 2024

    It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Server did not verify whether the server certificate is valid for the target IP address; however, certificate signature validation is still performed. More specifically, when the client is configured to connect to an IP address (instead of a hostname) it does not validate the server certificate's IP SAN values against that IP address and certificate validation fails, and therefore the connection is not blocked as expected.

    Published: 26 Oct 2023
    8.1
    High

    CVE-2023-46667

    Last Modified: 21 Nov 2024

    An issue was discovered in Fleet Server >= v8.10.0 and < v8.10.3 where Agent enrolment tokens are being inserted into the Fleet Server’s log file in plain text. These enrolment tokens could allow someone to enrol an agent into an agent policy, and potentially use that to retrieve other secrets in the policy including for Elasticsearch and third-party services. Alternatively a threat actor could potentially enrol agents to the clusters and send arbitrary events to Elasticsearch.

    Published: 26 Oct 2023
    7.5
    High

    CVE-2023-27170

    Last Modified: 16 Sept 2026

    Xpand IT Write-back manager v2.3.1 allows attackers to perform a directory traversal via modification of the siteName parameter.

    Published: 26 Oct 2023
    5.9
    Medium

    CVE-2023-46753

    Last Modified: 4 Nov 2025

    An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without mandatory attributes, e.g., one with only an unknown transit attribute.

    Published: 26 Oct 2023
    8.1
    High

    CVE-2023-45868

    Last Modified: 21 Nov 2024

    The Learning Module in ILIAS 7.25 (2023-09-12 release) allows an attacker (with basic user privileges) to achieve a high-impact Directory Traversal attack on confidentiality and availability. By exploiting this network-based vulnerability, the attacker can move specified directories, normally outside the documentRoot, to a publicly accessible location via the PHP function rename(). This results in a total loss of confidentiality, exposing sensitive resources, and potentially denying access to the affected component and the operating system's components. To exploit this, an attacker must manipulate a POST request during the creation of an exercise unit, by modifying the old_name and new_name parameters via directory traversal. However, it's essential to note that, when exploiting this vulnerability, the specified directory will be relocated from its original location, rendering all files obtained from there unavailable.

    Published: 26 Oct 2023
    7.5
    High

    CVE-2023-33558

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability in the component users-grid-data.php of Ocomon before v4.0.1 allows attackers to obtain sensitive information such as e-mails and usernames.

    Published: 26 Oct 2023
    7.1
    High

    CVE-2023-34058

    Last Modified: 6 Mar 2025

    VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.com/vmwb-repository/dcr-public/d1902b0e-d479-46bf-8ac9-cee0e31e8ec0/07ce8dbd-db48-4261-9b8f-c6d3ad8ba472/vim.vm.guest.AliasManager.html .

    Published: 26 Oct 2023
    8.8
    High

    CVE-2023-33559

    Last Modified: 21 Nov 2024

    A local file inclusion vulnerability via the lang parameter in OcoMon before v4.0.1 allows attackers to execute arbitrary code by supplying a crafted PHP file.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2020-17477

    Last Modified: 21 Nov 2024

    Incorrect LDAP ACLs in ucs-school-ldap-acls-master in UCS@school before 4.4v5-errata allow remote teachers, staff, and school administrators to read LDAP password hashes (sambaNTPassword, krb5Key, sambaPasswordHistory, and pwhistory) via LDAP search requests. For example, a teacher can gain administrator access via an NTLM hash.

    Published: 26 Oct 2023
    7.5
    High

    CVE-2023-31418

    Last Modified: 13 Feb 2025

    An issue has been identified with how Elasticsearch handled incoming requests on the HTTP layer. An unauthenticated user could force an Elasticsearch node to exit with an OutOfMemory error by sending a moderate number of malformed HTTP requests. The issue was identified by Elastic Engineering and we have no indication that the issue is known or that it is being exploited in the wild.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2023-31419

    Last Modified: 13 Feb 2025

    A flaw was discovered in Elasticsearch, affecting the _search API that allowed a specially crafted query string to cause a Stack Overflow and ultimately a Denial of Service.

    Published: 26 Oct 2023
    7.4
    High

    CVE-2023-34059

    Last Modified: 6 Mar 2025

    open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with non-root privileges may be able to hijack the /dev/uinput file descriptor allowing them to simulate user inputs.

    Published: 26 Oct 2023
    4.9
    Medium

    CVE-2023-38328

    Last Modified: 21 Nov 2024

    An issue was discovered in eGroupWare 17.1.20190111. An Improper Password Storage vulnerability affects the setup panel of under setup/manageheader.php, which allows authenticated remote attackers with administrator credentials to read a cleartext database password.

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2023-39726

    Last Modified: 21 Nov 2024

    An issue in Mintty v.3.6.4 and before allows a remote attacker to execute arbitrary code via crafted commands to the terminal.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2023-42188

    Last Modified: 21 Nov 2024

    IceCMS v2.0.1 is vulnerable to Cross Site Request Forgery (CSRF).

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2023-42406

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information and execute arbitrary code via the editrole.php component.

    Published: 26 Oct 2023
    7.8
    High

    CVE-2023-43352

    Last Modified: 21 Nov 2024

    An issue in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted payload to the Content Manager Menu component.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2023-45867

    Last Modified: 21 Nov 2024

    ILIAS (2013-09-12 release) contains a medium-criticality Directory Traversal local file inclusion vulnerability in the ScormAicc module. An attacker with a privileged account, typically holding the tutor role, can exploit this to gain unauthorized access to and potentially retrieve confidential files stored on the web server. The attacker can access files that are readable by the web server user www-data; this may include sensitive configuration files and documents located outside the documentRoot. The vulnerability is exploited by an attacker who manipulates the file parameter in a URL, inserting directory traversal sequences in order to access unauthorized files. This manipulation allows the attacker to retrieve sensitive files, such as /etc/passwd, potentially compromising the system's security. This issue poses a significant risk to confidentiality and is remotely exploitable over the internet.

    Published: 26 Oct 2023
    9
    Critical

    CVE-2023-45869

    Last Modified: 21 Nov 2024

    ILIAS 7.25 (2023-09-12) allows any authenticated user to execute arbitrary operating system commands remotely, when a highly privileged account accesses an XSS payload. The injected commands are executed via the exec() function in the execQuoted() method of the ilUtil class (/Services/Utilities/classes/class.ilUtil.php) This allows attackers to inject malicious commands into the system, potentially compromising the integrity, confidentiality, and availability of the ILIAS installation and the underlying operating system.

    Published: 26 Oct 2023
    6.5
    Medium

    CVE-2023-46234

    Last Modified: 10 Apr 2025

    browserify-sign is a package to duplicate the functionality of node's crypto public key functions, much of this is based on Fedor Indutny's work on indutny/tls.js. An upper bound check issue in `dsaVerify` function allows an attacker to construct signatures that can be successfully verified by any public key, thus leading to a signature forgery attack. All places in this project that involve DSA verification of user-input signatures will be affected by this vulnerability. This issue has been patched in version 4.2.2.

    Published: 26 Oct 2023
    6.1
    Medium

    CVE-2023-46374

    Last Modified: 21 Nov 2024

    ZenTao Enterprise Edition version 4.1.3 and before is vulnerable to Cross Site Scripting (XSS).

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2023-46435

    Last Modified: 21 Nov 2024

    Sourcecodester Packers and Movers Management System v1.0 is vulnerable to SQL Injection via mpms/?p=services/view_service&id.

    Published: 26 Oct 2023
    8.8
    High

    CVE-2023-46449

    Last Modified: 21 Nov 2024

    Sourcecodester Free and Open Source inventory management system v1.0 is vulnerable to Incorrect Access Control. An arbitrary user can change the password of another user and takeover the account via IDOR in the password change function.

    Published: 26 Oct 2023
    5.4
    Medium

    CVE-2023-46450

    Last Modified: 21 Nov 2024

    Sourcecodester Free and Open Source inventory management system 1.0 is vulnerable to Cross Site Scripting (XSS) via the Add supplier function.

    Published: 26 Oct 2023
    6.1
    Medium

    CVE-2023-46491

    Last Modified: 21 Nov 2024

    ZenTao Biz version 4.1.3 and before has a Cross Site Scripting (XSS) vulnerability in the Version Library.

    Published: 26 Oct 2023
    5.3
    Medium

    CVE-2023-46754

    Last Modified: 21 Nov 2024

    The admin panel for Obl.ong before 1.1.2 allows authorization bypass because the email OTP feature accepts arbitrary numerical values.

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2023-43208

    Last Modified: 31 Oct 2025

    NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is caused by the incomplete patch of CVE-2023-37679.

    Published: 26 Oct 2023
    5.9
    Medium

    CVE-2023-46752

    Last Modified: 4 Nov 2025

    An issue was discovered in FRRouting FRR through 9.0.1. It mishandles malformed MP_REACH_NLRI data, leading to a crash.

    Published: 26 Oct 2023
    8.8
    High

    CVE-2018-16739

    Last Modified: 21 Nov 2024

    An issue was discovered on certain ABUS TVIP devices. Due to a path traversal in /opt/cgi/admin/filewrite, an attacker can write to files, and thus execute code arbitrarily with root privileges.

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2018-17558

    Last Modified: 21 Nov 2024

    Hardcoded manufacturer credentials and an OS command injection vulnerability in the /cgi-bin/mft/ directory on ABUS TVIP TVIP20050 LM.1.6.18, TVIP10051 LM.1.6.18, TVIP11050 MG.1.6.03.05, TVIP20550 LM.1.6.18, TVIP10050 LM.1.6.18, TVIP11550 MG.1.6.03, TVIP21050 MG.1.6.03, and TVIP51550 MG.1.6.03 cameras allow remote attackers to execute code as root.

    Published: 26 Oct 2023
    7.5
    High

    CVE-2018-17559

    Last Modified: 21 Nov 2024

    Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2018-17878

    Last Modified: 21 Nov 2024

    Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintf() function.

    Published: 26 Oct 2023
    9.8
    Critical

    CVE-2018-17879

    Last Modified: 21 Nov 2024

    An issue was discovered on certain ABUS TVIP cameras. The CGI scripts allow remote attackers to execute code via system() as root. There are several injection points in various scripts.

    Published: 26 Oct 2023
    9
    Critical

    CVE-2023-31422

    Last Modified: 21 Nov 2024

    An issue was discovered by Elastic whereby sensitive information is recorded in Kibana logs in the event of an error. The issue impacts only Kibana version 8.10.0 when logging in the JSON layout or when the pattern layout is configured to log the %meta pattern. Elastic has released Kibana 8.10.1 which resolves this issue. The error object recorded in the log contains request information, which can include sensitive data, such as authentication credentials, cookies, authorization headers, query params, request paths, and other metadata. Some examples of sensitive data which can be included in the logs are account credentials for kibana_system, kibana-metricbeat, or Kibana end-users.

    Published: 26 Oct 2023
    4.6
    Medium

    CVE-2023-46668

    Last Modified: 21 Nov 2024

    If Elastic Endpoint (v7.9.0 - v8.10.3) is configured to use a non-default option in which the logging level is explicitly set to debug, and when Elastic Agent is simultaneously configured to collect and send those logs to Elasticsearch, then Elastic Agent API keys can be viewed in Elasticsearch in plaintext. These API keys could be used to write arbitrary data and read Elastic Endpoint user artifacts.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-30967

    Last Modified: 21 Nov 2024

    Gotham Orbital-Simulator service prior to 0.692.0 was found to be vulnerable to a Path traversal issue allowing an unauthenticated user to read arbitrary files on the file system.

    Published: 25 Oct 2023