CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2023-46521

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function RegisterRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46522

    Last Modified: 21 Nov 2024

    TP-LINK device TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 were discovered to contain a stack overflow via the function deviceInfoRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46534

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function modifyAccPwdRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46535

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function getResetVeriRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46536

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function chkRegVeriRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46537

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function getRegVeriRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46538

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function chkResetVeriRegister.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46539

    Last Modified: 21 Nov 2024

    TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function registerRequestHandle.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46550

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDelDevice.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46551

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formReflashClientTbl.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46552

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAP.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46553

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formParentControl.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46554

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMapDel.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46555

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formPortFw.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46556

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formFilter.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46557

    Last Modified: 21 Nov 2024

    TOTOLINK X2000R Gh v1.0.0-B20230221.0948.web was discovered to contain a stack overflow via the function formMultiAPVLAN.

    Published: 25 Oct 2023
    5.3
    Medium

    CVE-2023-46137

    Last Modified: 3 Nov 2025

    Twisted is an event-based framework for internet applications. Prior to version 23.10.0rc1, when sending multiple HTTP requests in one TCP packet, twisted.web will process the requests asynchronously without guaranteeing the response order. If one of the endpoints is controlled by an attacker, the attacker can delay the response on purpose to manipulate the response of the second request when a victim launched two requests using HTTP pipeline. Version 23.10.0rc1 contains a patch for this issue.

    Published: 25 Oct 2023
    7.5
    High

    CVE-2023-46346

    Last Modified: 21 Nov 2024

    In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 4.1.1 from MyPrestaModules for PrestaShop, a guest can download personal information without restriction by performing a path traversal attack. Due to a lack of permissions control and a lack of control in the path name construction, a guest can perform a path traversal to view all files on the information system.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46358

    Last Modified: 21 Nov 2024

    In the module "Referral and Affiliation Program" (referralbyphone) version 3.5.1 and before from Snegurka for PrestaShop, a guest can perform SQL injection. Method `ReferralByPhoneDefaultModuleFrontController::ajaxProcessCartRuleValidate` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46423

    Last Modified: 21 Nov 2024

    TOTOLINK X6000R v9.4.0cu.652_B20230116 was discovered to contain a remote command execution (RCE) vulnerability via the sub_417094 function.

    Published: 25 Oct 2023
    9.8
    Critical

    CVE-2023-46424

    Last Modified: 21 Nov 2024

    TOTOLINK X6000R v9.4.0cu.652_B20230116 was discovered to contain a remote command execution (RCE) vulnerability via the sub_422BD4 function.

    Published: 25 Oct 2023
    7.8
    High

    CVE-2023-5717

    Last Modified: 25 Feb 2026

    A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local privilege escalation. If perf_read_group() is called while an event's sibling_list is smaller than its child's sibling_list, it can increment or write to memory locations outside of the allocated buffer. We recommend upgrading past commit 32671e3799ca2e4590773fd0e63aaa4229e50c06.

    Published: 25 Oct 2023
    8
    High

    CVE-2023-46136

    Last Modified: 20 May 2026

    Werkzeug is a comprehensive WSGI web application library. In versions on the 3.x branch prior to 3.0.1 and on the 2.x branch prior to 2.3.8, if an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are appended chunk by chunk into internal bytearray and lookup for boundary is performed on growing buffer. This allows an attacker to cause a denial of service by sending crafted multipart data to an endpoint that will parse it. The amount of CPU time required can block worker processes from handling legitimate requests. This vulnerability has been patched in version 3.0.1 and 2.3.8.

    Published: 24 Oct 2023
    4.9
    Medium

    CVE-2023-46120

    Last Modified: 21 Nov 2024

    The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. `maxBodyLebgth` was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

    Published: 24 Oct 2023
    8.2
    High

    CVE-2023-46124

    Last Modified: 21 Nov 2024

    Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime environments, and the enforcement of privacy regulations in code. The Fides web application allows a custom integration to be uploaded as a ZIP file containing configuration and dataset definitions in YAML format. It was discovered that specially crafted YAML dataset and config files allow a malicious user to perform arbitrary requests to internal systems and exfiltrate data outside the environment (also known as a Server-Side Request Forgery). The application does not perform proper validation to block attempts to connect to internal (including localhost) resources. The vulnerability has been patched in Fides version `2.22.1`.

    Published: 24 Oct 2023
    6.5
    Medium

    CVE-2023-46125

    Last Modified: 21 Nov 2024

    Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in a runtime environment, and the enforcement of privacy regulations in code. The Fides webserver API allows users to retrieve its configuration using the `GET api/v1/config` endpoint. The configuration data is filtered to suppress most sensitive configuration information before it is returned to the user, but even the filtered data contains information about the internals and the backend infrastructure, such as various settings, servers’ addresses and ports and database username. This information is useful for administrative users as well as attackers, thus it should not be revealed to low-privileged users. This vulnerability allows Admin UI users with roles lower than the owner role e.g. the viewer role to retrieve the config information using the API. The vulnerability has been patched in Fides version `2.22.1`.

    Published: 24 Oct 2023
    8.6
    High

    CVE-2023-43795

    Last Modified: 21 Nov 2024

    GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The OGC Web Processing Service (WPS) specification is designed to process information from any server using GET and POST requests. This presents the opportunity for Server Side Request Forgery. This vulnerability has been patched in version 2.22.5 and 2.23.2.

    Published: 24 Oct 2023
    3.9
    Low

    CVE-2023-46126

    Last Modified: 21 Nov 2024

    Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime environments, helping enforce privacy regulations in code. The Fides web application allows users to edit consent and privacy notices such as cookie banners. The vulnerability makes it possible to craft a payload in the privacy policy URL which triggers JavaScript execution when the privacy notice is served by an integrated website. The domain scope of the executed JavaScript is that of the integrated website. Exploitation is limited to Admin UI users with the contributor role or higher. The vulnerability has been patched in Fides version `2.22.1`.

    Published: 24 Oct 2023
    7.4
    High

    CVE-2023-26219

    Last Modified: 21 Nov 2024

    The Hawk Console and Hawk Agent components of TIBCO Software Inc.'s TIBCO Hawk, TIBCO Hawk Distribution for TIBCO Silver Fabric, TIBCO Operational Intelligence Hawk RedTail, and TIBCO Runtime Agent contain a vulnerability that theoretically allows an attacker with access to the Hawk Console’s and Agent’s log to obtain credentials used to access associated EMS servers. Affected releases are TIBCO Software Inc.'s TIBCO Hawk: versions 6.2.2 and below, TIBCO Hawk Distribution for TIBCO Silver Fabric: versions 6.2.2 and below, TIBCO Operational Intelligence Hawk RedTail: versions 7.2.1 and below, and TIBCO Runtime Agent: versions 5.12.2 and below.

    Published: 24 Oct 2023
    5.5
    Medium

    CVE-2023-5752

    Last Modified: 3 Nov 2025

    When installing a package from a Mercurial VCS URL (ie "pip install hg+...") with pip prior to v23.3, the specified Mercurial revision could be used to inject arbitrary configuration options to the "hg clone" call (ie "--config"). Controlling the Mercurial configuration can modify how and which repository is installed. This vulnerability does not affect users who aren't installing from Mercurial.

    Published: 24 Oct 2023
    7.5
    High

    CVE-2023-39930

    Last Modified: 21 Nov 2024

    A first-factor authentication bypass vulnerability exists in the PingFederate with PingID Radius PCV when a MSCHAP authentication request is sent via a maliciously crafted RADIUS client request.

    Published: 24 Oct 2023
    7.8
    High

    CVE-2022-3699

    Last Modified: 21 Nov 2024

    A privilege escalation vulnerability was reported in the Lenovo HardwareScanPlugin prior to version 1.3.1.2 and Lenovo Diagnostics prior to version 4.45 that could allow a local user to execute code with elevated privileges.

    Published: 24 Oct 2023
    4.4
    Medium

    CVE-2022-3698

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was reported in the Lenovo HardwareScanPlugin versions prior to 1.3.1.2 and  Lenovo Diagnostics versions prior to 4.45 that could allow a local user with administrative access to trigger a system crash.

    Published: 24 Oct 2023
    4.4
    Medium

    CVE-2022-0353

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was reported in the Lenovo HardwareScanPlugin versions prior to 1.3.1.2 and  Lenovo Diagnostics versions prior to 4.45 that could allow a local user with administrative access to trigger a system crash.

    Published: 24 Oct 2023
    7.8
    High

    CVE-2023-3112

    Last Modified: 21 Nov 2024

    A vulnerability was reported in Elliptic Labs Virtual Lock Sensor for ThinkPad T14 Gen 3 that could allow an attacker with local access to execute code with elevated privileges.

    Published: 24 Oct 2023
    4.1
    Medium

    CVE-2023-4608

    Last Modified: 21 Nov 2024

    An authenticated XCC user with elevated privileges can perform blind SQL injection in limited cases through a crafted API command.  This affects ThinkSystem v2 and v3 servers with XCC; ThinkSystem v1 servers are not affected.

    Published: 24 Oct 2023
    7.5
    High

    CVE-2023-4607

    Last Modified: 3 Dec 2024

    An authenticated XCC user can change permissions for any user through a crafted API command.

    Published: 24 Oct 2023
    8.1
    High

    CVE-2023-4606

    Last Modified: 21 Nov 2024

    An authenticated XCC user with Read-Only permission can change a different user’s password through a crafted API command.   This affects ThinkSystem v2 and v3 servers with XCC; ThinkSystem v1 servers are not affected.

    Published: 24 Oct 2023
    —
    Unknown

    CVE-2023-23767

    Last Modified: 8 Nov 2023

    This CVE ID has been rejected or withdrawn by GitHub as it was issued in error.

    Published: 24 Oct 2023
    8.6
    High

    CVE-2023-41339

    Last Modified: 21 Nov 2024

    GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The WMS specification defines an ``sld=<url>`` parameter for GetMap, GetLegendGraphic and GetFeatureInfo operations for user supplied "dynamic styling". Enabling the use of dynamic styles, without also configuring URL checks, provides the opportunity for Service Side Request Forgery. This vulnerability can be used to steal user NetNTLMv2 hashes which could be relayed or cracked externally to gain further access. This vulnerability has been patched in versions 2.22.5 and 2.23.2.

    Published: 24 Oct 2023
    6.1
    Medium

    CVE-2023-5758

    Last Modified: 19 Aug 2026

    When opening a page in reader mode, the redirect URL could have caused attacker-controlled script to execute in a reflected Cross-Site Scripting (XSS) attack. This vulnerability affects Firefox for iOS < 119.

    Published: 24 Oct 2023
    7.3
    High

    CVE-2023-39231

    Last Modified: 21 Nov 2024

    PingFederate using the PingOne MFA adapter allows a new MFA device to be paired without requiring second factor authentication from an existing registered device. A threat actor may be able to exploit this vulnerability to register their own MFA device if they have knowledge of a victim user's first factor credentials.

    Published: 24 Oct 2023
    4.7
    Medium

    CVE-2023-43510

    Last Modified: 21 Nov 2024

    A vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as a non-privileged user on the underlying operating system leading to partial system compromise.

    Published: 24 Oct 2023
    5.8
    Medium

    CVE-2023-43509

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to send notifications to computers that are running ClearPass OnGuard. These notifications can then be used to phish users or trick them into downloading malicious software.

    Published: 24 Oct 2023
    6.3
    Medium

    CVE-2023-43508

    Last Modified: 21 Nov 2024

    Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privileges to perform actions that change the state of the ClearPass Policy Manager instance. Successful exploitation of these vulnerabilities allow an attacker to complete state-changing actions in the web-based management interface that should not be allowed by their current level of authorization on the platform.

    Published: 24 Oct 2023
    7.2
    High

    CVE-2023-43507

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit this vulnerability to obtain and modify sensitive information in the underlying database potentially leading to complete compromise of the ClearPass Policy Manager cluster.

    Published: 24 Oct 2023
    7.8
    High

    CVE-2023-43506

    Last Modified: 21 Nov 2024

    A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges to those of a higher role. A successful exploit allows malicious users to execute arbitrary code with root level privileges on the Linux instance.

    Published: 24 Oct 2023
    4.9
    Medium

    CVE-2023-42031

    Last Modified: 21 Nov 2024

    IBM TXSeries for Multiplatforms, 8.1, 8.2, and 9.1, CICS TX Standard CICS TX Advanced 10.1 and 11.1 could allow a privileged user to cause a denial of service due to uncontrolled resource consumption. IBM X-Force ID: 266016.

    Published: 24 Oct 2023
    —
    Unknown

    CVE-2023-5755

    Last Modified: 3 Apr 2024

    **REJECT** Duplicate of CVE-2023-46784. Please refer to CVE-2023-46784.

    Published: 24 Oct 2023
    6.3
    Medium

    CVE-2023-5753

    Last Modified: 13 Feb 2025

    Potential buffer overflows in the Bluetooth subsystem due to asserts being disabled in /subsys/bluetooth/host/hci_core.c

    Published: 24 Oct 2023