CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2022-24401

    Last Modified: 21 Nov 2024

    Adversary-induced keystream re-use on TETRA air-interface encrypted traffic using any TEA keystream generator. IV generation is based upon several TDMA frame counters, which are frequently broadcast by the infrastructure in an unauthenticated manner. An active adversary can manipulate the view of these counters in a mobile station, provoking keystream re-use. By sending crafted messages to the MS and analyzing MS responses, keystream for arbitrary frames can be recovered.

    Published: 19 Oct 2023
    8.8
    High

    CVE-2022-24402

    Last Modified: 21 Nov 2024

    The TETRA TEA1 keystream generator implements a key register initialization function that compresses the 80-bit key to only 32 bits for usage during the keystream generation phase, which is insufficient to safeguard against exhaustive search attacks.

    Published: 19 Oct 2023
    5.9
    Medium

    CVE-2022-24404

    Last Modified: 21 Nov 2024

    Lack of cryptographic integrity check on TETRA air-interface encrypted traffic. Since a stream cipher is employed, this allows an active adversary to manipulate cleartext data in a bit-by-bit fashion.

    Published: 19 Oct 2023
    6.5
    Medium

    CVE-2023-25753

    Last Modified: 21 Nov 2024

    There exists an SSRF (Server-Side Request Forgery) vulnerability located at the /sandbox/proxyGateway endpoint. This vulnerability allows us to manipulate arbitrary requests and retrieve corresponding responses by inputting any URL into the requestUrl parameter. Of particular concern is our ability to exert control over the HTTP method, cookies, IP address, and headers. This effectively grants us the capability to dispatch complete HTTP requests to hosts of our choosing. This issue affects Apache ShenYu: 2.5.1. Upgrade to Apache ShenYu 2.6.0 or apply patch  https://github.com/apache/shenyu/pull/4776  .

    Published: 19 Oct 2023
    5.3
    Medium

    CVE-2023-5254

    Last Modified: 8 Apr 2026

    The ChatBot plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.8.9 via the qcld_wb_chatbot_check_user function. This can allow unauthenticated attackers to extract sensitive data including confirmation as to whether a user name exists on the site as well as order information for existing users.

    Published: 19 Oct 2023
    9.6
    Critical

    CVE-2023-5212

    Last Modified: 8 Apr 2026

    The AI ChatBot plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 4.8.9 as well as version 4.9.2. This makes it possible for authenticated attackers with subscriber privileges to delete arbitrary files on the server, which makes it possible to take over affected sites as well as others sharing the same hosting account. Version 4.9.1 originally addressed the issue, but it was reintroduced in 4.9.2 and fixed again in 4.9.3.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2023-5204

    Last Modified: 8 Apr 2026

    The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and including, 4.8.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 19 Oct 2023
    9.6
    Critical

    CVE-2023-5241

    Last Modified: 8 Apr 2026

    The AI ChatBot for WordPress is vulnerable to Directory Traversal in versions up to, and including, 4.8.9 as well as 4.9.2 via the qcld_openai_upload_pagetraining_file function. This allows subscriber-level attackers to append "<?php" to any existing file on the server resulting in potential DoS when appended to critical files such as wp-config.php.

    Published: 19 Oct 2023
    8.1
    High

    CVE-2023-37503

    Last Modified: 21 Nov 2024

    HCL Compass is vulnerable to insecure password requirements. An attacker could easily guess the password and gain access to user accounts.

    Published: 19 Oct 2023
    6.4
    Medium

    CVE-2023-5638

    Last Modified: 8 Apr 2026

    The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'wcj_image' shortcode in versions up to, and including, 7.1.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 19 Oct 2023
    6.4
    Medium

    CVE-2023-5639

    Last Modified: 8 Apr 2026

    The Team Showcase plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tmfshortcode' shortcode in all versions up to, and including, 2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 19 Oct 2023
    5.3
    Medium

    CVE-2023-4645

    Last Modified: 8 Apr 2026

    The Ad Inserter for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.30 via the ai_ajax function. This can allow unauthenticated attackers to extract sensitive data such as post titles and slugs (including those of protected posts along with their passwords), usernames, available roles, the plugin license key provided the remote debugging option is enabled. In the default state it is disabled.

    Published: 19 Oct 2023
    8.8
    High

    CVE-2023-5336

    Last Modified: 8 Apr 2026

    The iPanorama 360 – WordPress Virtual Tour Builder plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to, and including, 1.8.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers with contributor-level and above permissions to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 19 Oct 2023
    7.1
    High

    CVE-2023-37504

    Last Modified: 21 Nov 2024

    HCL Compass is vulnerable to failure to invalidate sessions. The application does not invalidate authenticated sessions when the log out functionality is called.  If the session identifier can be discovered, it could be replayed to the application and used to impersonate the user.

    Published: 19 Oct 2023
    8.6
    High

    CVE-2023-46848

    Last Modified: 25 Feb 2026

    Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input.

    Published: 19 Oct 2023
    8.6
    High

    CVE-2023-46847

    Last Modified: 25 Feb 2026

    Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

    Published: 19 Oct 2023
    9.3
    Critical

    CVE-2023-46846

    Last Modified: 25 Feb 2026

    SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Request/Response smuggling past firewall and frontend security systems.

    Published: 19 Oct 2023
    5
    Medium

    CVE-2023-34050

    Last Modified: 21 Nov 2024

    In spring AMQP versions 1.0.0 to 2.4.16 and 3.0.0 to 3.0.9 , allowed list patterns for deserializable class names were added to Spring AMQP, allowing users to lock down deserialization of data in messages from untrusted sources; however by default, when no allowed list was provided, all classes could be deserialized. Specifically, an application is vulnerable if * the SimpleMessageConverter or SerializerMessageConverter is used * the user does not configure allowed list patterns * untrusted message originators gain permissions to write messages to the RabbitMQ broker to send malicious content

    Published: 19 Oct 2023
    9.6
    Critical

    CVE-2022-37830

    Last Modified: 21 Nov 2024

    Interway a.s WebJET CMS 8.6.896 is vulnerable to Cross Site Scripting (XSS).

    Published: 19 Oct 2023
    7.5
    High

    CVE-2023-5824

    Last Modified: 6 Nov 2025

    A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

    Published: 19 Oct 2023
    10
    Critical

    CVE-2022-42150

    Last Modified: 21 Nov 2024

    TinyLab linux-lab v1.1-rc1 and cloud-labv0.8-rc2, v1.1-rc1 are vulnerable to insecure permissions. The default configuration could cause Container Escape.

    Published: 19 Oct 2023
    5.4
    Medium

    CVE-2023-43344

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary code via a crafted script to the SEO - Meta description parameter in the Pages Menu component.

    Published: 19 Oct 2023
    8.6
    High

    CVE-2023-43345

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary code via a crafted script to the Content - Name parameter in the Pages Menu component.

    Published: 19 Oct 2023
    5.4
    Medium

    CVE-2023-43359

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted script to the Page Specific Metadata and Smarty data parameters in the Content Manager Menu component.

    Published: 19 Oct 2023
    7.5
    High

    CVE-2023-31122

    Last Modified: 1 Aug 2025

    Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.57.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2022-47583

    Last Modified: 21 Nov 2024

    Terminal character injection in Mintty before 3.6.3 allows code execution via unescaped output to the terminal.

    Published: 19 Oct 2023
    8.1
    High

    CVE-2023-27791

    Last Modified: 21 Nov 2024

    An issue found in IXP Data Easy Install 6.6.148840 allows a remote attacker to escalate privileges via insecure PRNG.

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-27792

    Last Modified: 21 Nov 2024

    An issue found in IXP Data Easy Install v.6.6.14884.0 allows an attacker to escalate privileges via lack of permissions applied to sub directories.

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-27793

    Last Modified: 21 Nov 2024

    An issue discovered in IXP Data Easy Install v.6.6.14884.0 allows local attackers to gain escalated privileges via weak encoding of sensitive information.

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-27795

    Last Modified: 21 Nov 2024

    An issue found in IXP Data Easy Install v.6.6.14884.0 allows a local attacker to gain privileges via a static XOR key.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2023-30131

    Last Modified: 21 Nov 2024

    An issue discovered in IXP EasyInstall 6.6.14884.0 allows attackers to run arbitrary commands, gain escalated privilege, and cause other unspecified impacts via unauthenticated API calls.

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-30132

    Last Modified: 21 Nov 2024

    An issue discovered in IXP Data EasyInstall 6.6.14907.0 allows attackers to gain escalated privileges via static Cryptographic Key.

    Published: 19 Oct 2023
    5.3
    Medium

    CVE-2023-30633

    Last Modified: 21 Nov 2024

    An issue was discovered in TrEEConfigDriver in Insyde InsydeH2O with kernel 5.0 through 5.5. It can report false TPM PCR values, and thus mask malware activity. Devices use Platform Configuration Registers (PCRs) to record information about device and software configuration to ensure that the boot process is secure. (For example, Windows uses these PCR measurements to determine device health.) A vulnerable device can masquerade as a healthy device by extending arbitrary values into Platform Configuration Register (PCR) banks. This requires physical access to a target victim's device, or compromise of user credentials for a device. This issue is similar to CVE-2021-42299 (on Surface Pro devices).

    Published: 19 Oct 2023
    6.5
    Medium

    CVE-2023-31046

    Last Modified: 21 Nov 2024

    A Path Traversal vulnerability exists in PaperCut NG before 22.1.1 and PaperCut MF before 22.1.1. Under specific conditions, this could potentially allow an authenticated attacker to achieve read-only access to the server's filesystem, because requests beginning with "GET /ui/static/..//.." reach getStaticContent in UIContentResource.class in the static-content-files servlet.

    Published: 19 Oct 2023
    7.5
    High

    CVE-2023-44690

    Last Modified: 21 Nov 2024

    Inadequate encryption strength in mycli 1.27.0 allows attackers to view sensitive information via /mycli/config.py

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-43252

    Last Modified: 21 Nov 2024

    XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file.

    Published: 19 Oct 2023
    5.3
    Medium

    CVE-2023-39731

    Last Modified: 21 Nov 2024

    The leakage of the client secret in Kaibutsunosato v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2023-45379

    Last Modified: 9 Jul 2026

    In the module "Rotator Img" (posrotatorimg) in versions at least up to 1.1 from PosThemes for PrestaShop, a guest can perform SQL injection.

    Published: 19 Oct 2023
    5.4
    Medium

    CVE-2023-43342

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary code via a crafted script to the Languages Menu component.

    Published: 19 Oct 2023
    7.8
    High

    CVE-2023-43251

    Last Modified: 21 Nov 2024

    XNSoft Nconvert 7.136 has an Exception Handler Chain Corrupted via a crafted image file. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution.

    Published: 19 Oct 2023
    5.2
    Medium

    CVE-2023-43340

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in evolution v.3.2.3 allows a local attacker to execute arbitrary code via a crafted payload injected into the cmsadmin, cmsadminemail, cmspassword and cmspasswordconfim parameters

    Published: 19 Oct 2023
    6.1
    Medium

    CVE-2023-43341

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in evolution evo v.3.2.3 allows a local attacker to execute arbitrary code via a crafted payload injected uid parameter.

    Published: 19 Oct 2023
    6.1
    Medium

    CVE-2023-43875

    Last Modified: 21 Nov 2024

    Multiple Cross-Site Scripting (XSS) vulnerabilities in installation of Subrion CMS v.4.2.1 allows a local attacker to execute arbitrary web scripts via a crafted payload injected into the dbhost, dbname, dbuser, adminusername and adminemail.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2023-43986

    Last Modified: 21 Nov 2024

    DM Concept configurator before v4.9.4 was discovered to contain a SQL injection vulnerability via the component ConfiguratorAttachment::getAttachmentByToken.

    Published: 19 Oct 2023
    7.5
    High

    CVE-2023-45277

    Last Modified: 21 Nov 2024

    Yamcs 5.8.6 is vulnerable to directory traversal (issue 1 of 2). The vulnerability is in the storage functionality of the API and allows one to escape the base directory of the buckets, freely navigate system directories, and read arbitrary files.

    Published: 19 Oct 2023
    9.1
    Critical

    CVE-2023-45278

    Last Modified: 21 Nov 2024

    Directory Traversal vulnerability in the storage functionality of the API in Yamcs 5.8.6 allows attackers to delete arbitrary files via crafted HTTP DELETE request.

    Published: 19 Oct 2023
    5.4
    Medium

    CVE-2023-45279

    Last Modified: 21 Nov 2024

    Yamcs 5.8.6 allows XSS (issue 1 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload of any file. There's a way to upload a display referencing a malicious JavaScript file to the bucket. The user can then open the uploaded display by selecting Telemetry from the menu and navigating to the display.

    Published: 19 Oct 2023
    5.4
    Medium

    CVE-2023-45280

    Last Modified: 21 Nov 2024

    Yamcs 5.8.6 allows XSS (issue 2 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload of any file. There's a way to upload an HTML file containing arbitrary JavaScript and then navigate to it. Once the user opens the file, the browser will execute the arbitrary JavaScript.

    Published: 19 Oct 2023
    6.1
    Medium

    CVE-2023-45281

    Last Modified: 21 Nov 2024

    An issue in Yamcs 5.8.6 allows attackers to obtain the session cookie via upload of crafted HTML file.

    Published: 19 Oct 2023
    9.8
    Critical

    CVE-2023-45376

    Last Modified: 21 Nov 2024

    In the module "Carousels Pack - Instagram, Products, Brands, Supplier" (hicarouselspack) for PrestaShop up to version 1.5.0 from HiPresta for PrestaShop, a guest can perform SQL injection via HiCpProductGetter::getViewedProduct().`

    Published: 19 Oct 2023