CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2023-4959

    Last Modified: 7 Nov 2025

    A flaw was found in Quay. Cross-site request forgery (CSRF) attacks force a user to perform unwanted actions in an application. During the pentest, it was detected that the config-editor page is vulnerable to CSRF. The config-editor page is used to configure the Quay instance. By coercing the victim’s browser into sending an attacker-controlled request from another domain, it is possible to reconfigure the Quay instance (including adding users with admin privileges).

    Published: 15 Sept 2023
    5.5
    Medium

    CVE-2023-36160

    Last Modified: 21 Nov 2024

    An issue was discovered in Qubo Smart Plug10A version HSP02_01_01_14_SYSTEM-10 A, allows local attackers to gain sensitive information and other unspecified impact via UART console.

    Published: 15 Sept 2023
    5.4
    Medium

    CVE-2023-40985

    Last Modified: 21 Nov 2024

    An issue was discovered in Webmin 2.100. The File Manager functionality allows an attacker to exploit a Cross-Site Scripting (XSS) vulnerability. By providing a malicious payload, an attacker can inject arbitrary code, which is then executed within the context of the victim's browser when any file is searched/replaced.

    Published: 15 Sept 2023
    5.5
    Medium

    CVE-2023-43114

    Last Modified: 21 Nov 2024

    An issue was discovered in Qt before 5.15.16, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3 on Windows. When using the GDI font engine, if a corrupted font is loaded via QFontDatabase::addApplicationFont{FromData], then it can cause the application to crash because of missing length checks.

    Published: 15 Sept 2023
    7.5
    High

    CVE-2022-47848

    Last Modified: 21 Nov 2024

    An issue was discovered in Bezeq Vtech NB403-IL version BZ_2.02.07.09.13.01 and Vtech IAD604-IL versions BZ_2.02.07.09.13.01, BZ_2.02.07.09.13T, and BZ_2.02.07.09.09T, allows remote attackers to gain sensitive information via rootDesc.xml page of the UPnP service.

    Published: 15 Sept 2023
    9.8
    Critical

    CVE-2023-36657

    Last Modified: 21 Nov 2024

    An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. Built-in features of Windows (desktop shortcuts, narrator) can be abused for privilege escalation.

    Published: 15 Sept 2023
    7.8
    High

    CVE-2023-36658

    Last Modified: 21 Nov 2024

    An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. It has an unquoted service path that can be abused locally.

    Published: 15 Sept 2023
    9.8
    Critical

    CVE-2023-36659

    Last Modified: 21 Nov 2024

    An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. Long inputs were not properly processed, which allows remote attackers to cause a denial of service (loss of communication).

    Published: 15 Sept 2023
    9.8
    Critical

    CVE-2023-28614

    Last Modified: 21 Nov 2024

    Freewill iFIS (aka SMART Trade) 20.01.01.04 allows OS Command Injection via shell metacharacters to a report page.

    Published: 15 Sept 2023
    6.5
    Medium

    CVE-2023-4956

    Last Modified: 7 Nov 2025

    A flaw was found in Quay. Clickjacking is when an attacker uses multiple transparent or opaque layers to trick a user into clicking on a button or link on another page when they intend to click on the top-level page. During the pentest, it has been detected that the config-editor page is vulnerable to clickjacking. This flaw allows an attacker to trick an administrator user into clicking on buttons on the config-editor panel, possibly reconfiguring some parts of the Quay instance.

    Published: 15 Sept 2023
    9.8
    Critical

    CVE-2023-39643

    Last Modified: 21 Nov 2024

    Bl Modules xmlfeeds before v3.9.8 was discovered to contain a SQL injection vulnerability via the component SearchApiXml::Xmlfeeds().

    Published: 15 Sept 2023
    5.4
    Medium

    CVE-2023-40982

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in Webmin v2.100 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the cloned module name parameter.

    Published: 15 Sept 2023
    6.1
    Medium

    CVE-2023-40983

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execute malicious scripts via injecting a crafted payload into the Find in Results file.

    Published: 15 Sept 2023
    5.4
    Medium

    CVE-2023-40984

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execute malicious scripts via injecting a crafted payload into the Replace in Results file.

    Published: 15 Sept 2023
    5.4
    Medium

    CVE-2023-40986

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in the Usermin Configuration function of Webmin v2.100 allows attackers to execute arbitrary web sripts or HTML via a crafted payload injected into the Custom field.

    Published: 15 Sept 2023
    5.4
    Medium

    CVE-2023-41436

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in CSZCMS v.1.3.0 allows a local attacker to execute arbitrary code via a crafted script to the Additional Meta Tag parameter in the Pages Content Menu component.

    Published: 15 Sept 2023
    4.8
    Medium

    CVE-2023-41626

    Last Modified: 21 Nov 2024

    Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface.

    Published: 15 Sept 2023
    8.8
    High

    CVE-2023-42270

    Last Modified: 21 Nov 2024

    Grocy <= 4.0.2 is vulnerable to Cross Site Request Forgery (CSRF).

    Published: 15 Sept 2023
    9.8
    Critical

    CVE-2023-42398

    Last Modified: 21 Nov 2024

    An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ueditor component in controller.php.

    Published: 15 Sept 2023
    5.5
    Medium

    CVE-2023-43090

    Last Modified: 21 Nov 2024

    A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows of the locked desktop session by using keyboard shortcuts to unlock the restricted functionality of the screenshot tool.

    Published: 15 Sept 2023
    6.8
    Medium

    CVE-2023-4680

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise transit secrets engine allowed authorized users to specify arbitrary nonces, even with convergent encryption disabled. The encrypt endpoint, in combination with an offline attack, could be used to decrypt arbitrary ciphertext and potentially derive the authentication subkey when using transit secrets engine without convergent encryption. Introduced in 1.6.0 and fixed in 1.14.3, 1.13.7, and 1.12.11.

    Published: 14 Sept 2023
    2.7
    Low

    CVE-2023-4965

    Last Modified: 21 Nov 2024

    A vulnerability was found in phpipam 1.5.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Header Handler. The manipulation of the argument X-Forwarded-Host leads to open redirect. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-239732.

    Published: 14 Sept 2023
    6.1
    Medium

    CVE-2023-4676

    Last Modified: 21 May 2026

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yordam MedasPro allows Reflected XSS. This issue affects MedasPro: before 28.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-4972

    Last Modified: 21 May 2026

    Incorrect Use of Privileged APIs vulnerability in Yepas Digital Yepas allows Collect Data as Provided by Users. This issue affects Digital Yepas: before 1.0.1.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-4702

    Last Modified: 21 May 2026

    Authentication Bypass Using an Alternate Path or Channel vulnerability in Yepas Digital Yepas allows Authentication Bypass. This issue affects Digital Yepas: before 1.0.1.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-4669

    Last Modified: 21 May 2026

    Authentication Bypass by Assumed-Immutable Data vulnerability in Exagate SYSGuard 3001 allows Authentication Bypass. This issue affects SYSGuard 3001: before 3.2.20.0.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-4766

    Last Modified: 21 May 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Movus allows SQL Injection. This issue affects Movus: before 20230913.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-4832

    Last Modified: 21 May 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aceka Company Management allows SQL Injection. This issue affects Company Management: before 3072 .

    Published: 14 Sept 2023
    2
    Low

    CVE-2023-4951

    Last Modified: 21 Nov 2024

    A cross site scripting issue was discovered with the pagination function on the "Client-based Authentication Policy Configuration" screen of the GreenRADIUS web admin interface. This issue is found in GreenRADIUS v5.1.1.1 and prior. A fix was included in v5.1.2.2.

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-30909

    Last Modified: 21 Nov 2024

    A remote authentication bypass issue exists in some OneView APIs.

    Published: 14 Sept 2023
    8
    High

    CVE-2023-2848

    Last Modified: 21 Nov 2024

    Movim prior to version 0.22 is affected by a Cross-Site WebSocket Hijacking vulnerability. This was the result of a missing header validation.

    Published: 14 Sept 2023
    5.5
    Medium

    CVE-2023-38558

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in SIMATIC PCS neo (Administration Console) V4.0 (All versions), SIMATIC PCS neo (Administration Console) V4.0 Update 1 (All versions). The affected application leaks Windows admin credentials. An attacker with local access to the Administration Console could get the credentials, and impersonate the admin user, thereby gaining admin access to other Windows systems.

    Published: 14 Sept 2023
    8.2
    High

    CVE-2023-38557

    Last Modified: 27 Feb 2025

    A vulnerability has been identified in Spectrum Power 7 (All versions < V23Q3). The affected product assigns improper access rights to the update script. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.

    Published: 14 Sept 2023
    7.8
    High

    CVE-2023-4516

    Last Modified: 27 Feb 2025

    A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update Service that could allow a local attacker to change update source, potentially leading to remote code execution when the attacker force an update containing malicious content.

    Published: 14 Sept 2023
    7.8
    High

    CVE-2023-41267

    Last Modified: 13 Feb 2025

    In the Apache Airflow HDFS Provider, versions prior to 4.1.1, a documentation info pointed users to an install incorrect pip package. As this package name was unclaimed, in theory, an attacker could claim this package and provide code that would be executed when this package was installed. The Airflow team has since taken ownership of the package (neutralizing the risk), and fixed the doc strings in version 4.1.1

    Published: 14 Sept 2023
    9.8
    Critical

    CVE-2023-38204

    Last Modified: 27 Feb 2025

    Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.

    Published: 14 Sept 2023
    7.5
    High

    CVE-2023-38205

    Last Modified: 23 Oct 2025

    Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction.

    Published: 14 Sept 2023
    5.3
    Medium

    CVE-2023-38206

    Last Modified: 27 Feb 2025

    Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints resulting in a low-confidentiality impact. Exploitation of this issue does not require user interaction.

    Published: 14 Sept 2023
    7.1
    High

    CVE-2023-4814

    Last Modified: 21 Nov 2024

    A Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for which the user does not have permission to.

    Published: 14 Sept 2023
    4.3
    Medium

    CVE-2023-4948

    Last Modified: 8 Apr 2026

    The WooCommerce CVR Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the refresh_order_cvr_data AJAX action in versions up to 6.1.0. This makes it possible for authenticated attackers with contributor-level access and above, to update CVR numbers for orders.

    Published: 14 Sept 2023
    —
    Unknown

    CVE-2023-41959

    Last Modified: 27 Aug 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 14 Sept 2023
    —
    Unknown

    CVE-2023-41087

    Last Modified: 27 Aug 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 14 Sept 2023
    —
    Unknown

    CVE-2023-42430

    Last Modified: 27 Aug 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 14 Sept 2023
    —
    Unknown

    CVE-2023-38134

    Last Modified: 27 Aug 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 14 Sept 2023
    6.4
    Medium

    CVE-2023-4945

    Last Modified: 8 Apr 2026

    The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple shortcodes in versions up to, and including, 7.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 14 Sept 2023
    6.4
    Medium

    CVE-2023-4944

    Last Modified: 8 Apr 2026

    The Awesome Weather Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'awesome-weather' shortcode in versions up to, and including, 3.0.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 14 Sept 2023
    6.4
    Medium

    CVE-2023-4841

    Last Modified: 8 Apr 2026

    The Feeds for YouTube plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'youtube-feed' shortcode in versions up to, and including, 2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 14 Sept 2023
    3.5
    Low

    CVE-2023-41900

    Last Modified: 13 Feb 2025

    Jetty is a Java based web server and servlet engine. Versions 9.4.21 through 9.4.51, 10.0.15, and 11.0.15 are vulnerable to weak authentication. If a Jetty `OpenIdAuthenticator` uses the optional nested `LoginService`, and that `LoginService` decides to revoke an already authenticated user, then the current request will still treat the user as authenticated. The authentication is then cleared from the session and subsequent requests will not be treated as authenticated. So a request on a previously authenticated session could be allowed to bypass authentication after it had been rejected by the `LoginService`. This impacts usages of the jetty-openid which have configured a nested `LoginService` and where that `LoginService` will is capable of rejecting previously authenticated users. Versions 9.4.52, 10.0.16, and 11.0.16 have a patch for this issue.

    Published: 14 Sept 2023
    7.5
    High

    CVE-2023-26141

    Last Modified: 21 Nov 2024

    Versions of the package sidekiq before 7.1.3 are vulnerable to Denial of Service (DoS) due to insufficient checks in the dashboard-charts.js file. An attacker can exploit this vulnerability by manipulating the localStorage value which will cause excessive polling requests.

    Published: 14 Sept 2023
    8.8
    High

    CVE-2023-40957

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability in Didotech srl Engineering & Lifecycle Management (aka pdm) v.14.0, v.15.0 and v.16.0 fixed in pdm-14.0.1.0.0, pdm-15.0.1.0.0, and pdm-16.0.1.0.0 allows a remote authenticated attacker to execute arbitrary code via the request parameter in models/base_client.py component.

    Published: 14 Sept 2023