CVE Feed

    Dashboard / CVE

    9
    Critical

    CVE-2017-9453

    Last Modified: 21 Nov 2024

    BMC Server Automation before 8.9.01 patch 1 allows Process Spawner command execution because of authentication bypass.

    Published: 5 Sept 2023
    6.1
    Medium

    CVE-2023-39598

    Last Modified: 21 Nov 2024

    Cross Site Scripting vulnerability in IceWarp Corporation WebClient v.10.2.1 allows a remote attacker to execute arbitrary code via a crafted payload to the mid parameter.

    Published: 5 Sept 2023
    9.8
    Critical

    CVE-2023-39654

    Last Modified: 21 Nov 2024

    abupy up to v0.4.0 was discovered to contain a SQL injection vulnerability via the component abupy.MarketBu.ABuSymbol.search_to_symbol_dict.

    Published: 5 Sept 2023
    8.8
    High

    CVE-2023-40918

    Last Modified: 21 Nov 2024

    KnowStreaming 3.3.0 is vulnerable to Escalation of Privileges. Unauthorized users can create a new user with an admin role.

    Published: 5 Sept 2023
    9.8
    Critical

    CVE-2023-41012

    Last Modified: 21 Nov 2024

    An issue in China Mobile Communications China Mobile Intelligent Home Gateway v.HG6543C4 allows a remote attacker to execute arbitrary code via the authentication mechanism.

    Published: 5 Sept 2023
    5.4
    Medium

    CVE-2023-41107

    Last Modified: 21 Nov 2024

    TEF portal 2023-07-17 is vulnerable to a persistent cross site scripting (XSS)attack.

    Published: 5 Sept 2023
    8.8
    High

    CVE-2023-41108

    Last Modified: 21 Nov 2024

    TEF portal 2023-07-17 is vulnerable to authenticated remote code execution.

    Published: 5 Sept 2023
    9.8
    Critical

    CVE-2023-41508

    Last Modified: 21 Nov 2024

    A hard coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

    Published: 5 Sept 2023
    5.3
    Medium

    CVE-2023-41908

    Last Modified: 21 Nov 2024

    Cerebrate before 1.15 lacks the Secure attribute for the session cookie.

    Published: 5 Sept 2023
    7.5
    High

    CVE-2023-41909

    Last Modified: 21 Nov 2024

    An issue was discovered in FRRouting FRR through 9.0. bgp_nlri_parse_flowspec in bgpd/bgp_flowspec.c processes malformed requests with no attributes, leading to a NULL pointer dereference.

    Published: 5 Sept 2023
    9.8
    Critical

    CVE-2023-41910

    Last Modified: 21 Nov 2024

    An issue was discovered in lldpd before 1.0.17. By crafting a CDP PDU packet with specific CDP_TLV_ADDRESSES TLVs, a malicious actor can remotely force the lldpd daemon to perform an out-of-bounds read on heap memory. This occurs in cdp_decode in daemon/protocols/cdp.c.

    Published: 5 Sept 2023
    5.1
    Medium

    CVE-2023-32338

    Last Modified: 21 Nov 2024

    IBM Sterling Secure Proxy and IBM Sterling External Authentication Server 6.0.3 and 6.1.0 stores user credentials in plain clear text which can be read by a local user with container access. IBM X-Force ID: 255585.

    Published: 4 Sept 2023
    4.3
    Medium

    CVE-2022-43903

    Last Modified: 21 Nov 2024

    IBM Security Guardium 10.6, 11.3, and 11.4 could allow an authenticated user to cause a denial of service due to due to improper input validation. IBM X-Force ID: 240894.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-35892

    Last Modified: 21 Nov 2024

    IBM Financial Transaction Manager for SWIFT Services 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 258786.

    Published: 4 Sept 2023
    7.5
    High

    CVE-2023-41058

    Last Modified: 21 Nov 2024

    Parse Server is an open source backend server. In affected versions the Parse Cloud trigger `beforeFind` is not invoked in certain conditions of `Parse.Query`. This can pose a vulnerability for deployments where the `beforeFind` trigger is used as a security layer to modify the incoming query. The vulnerability has been fixed by refactoring the internal query pipeline for a more concise code structure and implementing a patch to ensure the `beforeFind` trigger is invoked. This fix was introduced in commit `be4c7e23c6` and has been included in releases 6.2.2 and 5.5.5. Users are advised to upgrade. Users unable to upgrade should make use of parse server's security layers to manage access levels with Class-Level Permissions and Object-Level Access Control that should be used instead of custom security layers in Cloud Code triggers.

    Published: 4 Sept 2023
    3.7
    Low

    CVE-2023-40015

    Last Modified: 21 Nov 2024

    Vyper is a Pythonic Smart Contract Language. For the following (probably non-exhaustive) list of expressions, the compiler evaluates the arguments from right to left instead of left to right. `unsafe_add, unsafe_sub, unsafe_mul, unsafe_div, pow_mod256, |, &, ^ (bitwise operators), bitwise_or (deprecated), bitwise_and (deprecated), bitwise_xor (deprecated), raw_call, <, >, <=, >=, ==, !=, in, not in (when lhs and rhs are enums)`. This behaviour becomes a problem when the evaluation of one of the arguments produces side effects that other arguments depend on. The following expressions can produce side-effect: state modifying external call , state modifying internal call, `raw_call`, `pop()` when used on a Dynamic Array stored in the storage, `create_minimal_proxy_to`, `create_copy_of`, `create_from_blueprint`. This issue has not yet been patched. Users are advised to make sure that the arguments of the expression do not produce side effects or, if one does, that no other argument is dependent on those side effects.

    Published: 4 Sept 2023
    3.7
    Low

    CVE-2023-41052

    Last Modified: 21 Nov 2024

    Vyper is a Pythonic Smart Contract Language. In affected versions the order of evaluation of the arguments of the builtin functions `uint256_addmod`, `uint256_mulmod`, `ecadd` and `ecmul` does not follow source order. This behaviour is problematic when the evaluation of one of the arguments produces side effects that other arguments depend on. A patch is currently being developed on pull request #3583. When using builtins from the list above, users should make sure that the arguments of the expression do not produce side effects or, if one does, that no other argument is dependent on those side effects.

    Published: 4 Sept 2023
    7.5
    High

    CVE-2023-41055

    Last Modified: 21 Nov 2024

    LibreY is a fork of LibreX, a framework-less and javascript-free privacy respecting meta search engine. LibreY is subject to a Server-Side Request Forgery (SSRF) vulnerability in the `engines/google/text.php` and `engines/duckduckgo/text.php` files in versions before commit be59098abd119cda70b15bf3faac596dfd39a744. This vulnerability allows remote attackers to request the server to send HTTP GET requests to arbitrary targets and conduct Denial-of-Service (DoS) attacks via the `wikipedia_language` cookie. Remote attackers can request the server to download large files to reduce the performance of the server or even deny access from legitimate users. This issue has been patched in https://github.com/Ahwxorg/LibreY/pull/9. LibreY hosters are advised to use the latest commit. There are no known workarounds for this vulnerability.

    Published: 4 Sept 2023
    8.2
    High

    CVE-2023-41054

    Last Modified: 21 Nov 2024

    LibreY is a fork of LibreX, a framework-less and javascript-free privacy respecting meta search engine. LibreY is subject to a Server-Side Request Forgery (SSRF) vulnerability in the `image_proxy.php` file of LibreY before commit 8f9b9803f231e2954e5b49987a532d28fe50a627. This vulnerability allows remote attackers to use the server as a proxy to send HTTP GET requests to arbitrary targets and retrieve information in the internal network or conduct Denial-of-Service (DoS) attacks via the `url` parameter. Remote attackers can use the server as a proxy to send HTTP GET requests and retrieve information in the internal network. Remote attackers can also request the server to download large files or chain requests among multiple instances to reduce the performance of the server or even deny access from legitimate users. This issue has been addressed in https://github.com/Ahwxorg/LibreY/pull/31. LibreY hosters are advised to use the latest commit. There are no known workarounds for this vulnerability.

    Published: 4 Sept 2023
    5.5
    Medium

    CVE-2023-41057

    Last Modified: 21 Nov 2024

    hyper-bump-it is a command line tool for updating the version in project files.`hyper-bump-it` reads a file glob pattern from the configuration file. That is combined with the project root directory to construct a full glob pattern that is used to find files that should be edited. These matched files should be contained within the project root directory, but that is not checked. This could result in changes being written to files outside of the project. The default behaviour of `hyper-bump-it` is to display the planned changes and prompt the user for confirmation before editing any files. However, the configuration file provides a field that can be used cause files to be edited without displaying the prompt. This issue has been fixed in release version 0.5.1. Users are advised to upgrade. Users that are unable to update from vulnerable versions, executing `hyper-bump-it` with the `--interactive` command line argument will ensure that all planned changes are displayed and prompt the user for confirmation before editing any files, even if the configuration file contains `show_confirm_prompt=true`.

    Published: 4 Sept 2023
    —
    Unknown

    CVE-2023-41901

    Last Modified: 7 Nov 2023

    Further research determined the issue is not a vulnerability.

    Published: 4 Sept 2023
    5.5
    Medium

    CVE-2023-4758

    Last Modified: 21 Nov 2024

    Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV.

    Published: 4 Sept 2023
    7.8
    High

    CVE-2023-28072

    Last Modified: 21 Nov 2024

    Dell Alienware Command Center, versions prior to 5.5.51.0, contain a deserialization of untrusted data vulnerability. A local malicious user could potentially send specially crafted requests to the .NET Remoting server to run arbitrary code on the system.

    Published: 4 Sept 2023
    5.5
    Medium

    CVE-2023-4755

    Last Modified: 21 Nov 2024

    Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV.

    Published: 4 Sept 2023
    7.5
    High

    CVE-2023-3222

    Last Modified: 21 Nov 2024

    Vulnerability in the password recovery mechanism of Password Recovery plugin for Roundcube, in its 1.2 version, which could allow a remote attacker to change an existing user´s password by adding a 6-digit numeric token. An attacker could create an automatic script to test all possible values because the platform has no limit on the number of requests.

    Published: 4 Sept 2023
    5.3
    Medium

    CVE-2023-3221

    Last Modified: 21 Nov 2024

    User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.

    Published: 4 Sept 2023
    6.5
    Medium

    CVE-2023-32102

    Last Modified: 21 Nov 2024

    Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Pexle Chris Library Viewer plugin <= 2.0.6 versions.

    Published: 4 Sept 2023
    6.5
    Medium

    CVE-2023-32578

    Last Modified: 21 Nov 2024

    Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Twinpictures Column-Matic plugin <= 1.3.3 versions.

    Published: 4 Sept 2023
    6.5
    Medium

    CVE-2023-40197

    Last Modified: 21 Nov 2024

    Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Devaldi Ltd flowpaper plugin <= 1.9.9 versions.

    Published: 4 Sept 2023
    4.8
    Medium

    CVE-2023-4298

    Last Modified: 23 Apr 2025

    The 123.chat WordPress plugin before 1.3.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 4 Sept 2023
    7.5
    High

    CVE-2023-4279

    Last Modified: 23 Apr 2025

    This User Activity Log WordPress plugin before 1.6.7 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to hide the source of malicious traffic.

    Published: 4 Sept 2023
    2.7
    Low

    CVE-2023-4216

    Last Modified: 23 Apr 2025

    The Orders Tracking for WooCommerce WordPress plugin before 1.2.6 doesn't validate the file_url parameter when importing a CSV file, allowing high privilege users with the manage_woocommerce capability to access any file on the web server via a Traversal attack. The content retrieved is however limited to the first line of the file.

    Published: 4 Sept 2023
    8.8
    High

    CVE-2023-4019

    Last Modified: 23 Apr 2025

    The Media from FTP WordPress plugin before 11.17 does not properly limit who can use the plugin, which may allow users with author+ privileges to move files around, like wp-config.php, which may lead to RCE in some cases.

    Published: 4 Sept 2023
    4.9
    Medium

    CVE-2023-3814

    Last Modified: 6 Mar 2025

    The Advanced File Manager WordPress plugin before 5.1.1 does not adequately authorize its usage on multisite installations, allowing site admin users to list and read arbitrary files and folders on the server.

    Published: 4 Sept 2023
    4.8
    Medium

    CVE-2023-3499

    Last Modified: 23 Apr 2025

    The Photo Gallery, Images, Slider in Rbs Image Gallery WordPress plugin before 3.2.16 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 4 Sept 2023
    6.1
    Medium

    CVE-2023-2813

    Last Modified: 21 Nov 2024

    All of the above Aapna WordPress theme through 1.3, Anand WordPress theme through 1.2, Anfaust WordPress theme through 1.1, Arendelle WordPress theme before 1.1.13, Atlast Business WordPress theme through 1.5.8.5, Bazaar Lite WordPress theme before 1.8.6, Brain Power WordPress theme through 1.2, BunnyPressLite WordPress theme before 2.1, Cafe Bistro WordPress theme before 1.1.4, College WordPress theme before 1.5.1, Connections Reloaded WordPress theme through 3.1, Counterpoint WordPress theme through 1.8.1, Digitally WordPress theme through 1.0.8, Directory WordPress theme before 3.0.2, Drop WordPress theme before 1.22, Everse WordPress theme before 1.2.4, Fashionable Store WordPress theme through 1.3.4, Fullbase WordPress theme before 1.2.1, Ilex WordPress theme before 1.4.2, Js O3 Lite WordPress theme through 1.5.8.2, Js Paper WordPress theme through 2.5.7, Kata WordPress theme before 1.2.9, Kata App WordPress theme through 1.0.5, Kata Business WordPress theme through 1.0.2, Looki Lite WordPress theme before 1.3.0, moseter WordPress theme through 1.3.1, Nokke WordPress theme before 1.2.4, Nothing Personal WordPress theme through 1.0.7, Offset Writing WordPress theme through 1.2, Opor Ayam WordPress theme through 18, Pinzolo WordPress theme before 1.2.10, Plato WordPress theme before 1.1.9, Polka Dots WordPress theme through 1.2, Purity Of Soul WordPress theme through 1.9, Restaurant PT WordPress theme before 1.1.3, Saul WordPress theme before 1.1.0, Sean Lite WordPress theme before 1.4.6, Tantyyellow WordPress theme through 1.0.0.5, TIJAJI WordPress theme through 1.43, Tiki Time WordPress theme through 1.3, Tuaug4 WordPress theme through 1.4, Tydskrif WordPress theme through 1.1.3, UltraLight WordPress theme through 1.2, Venice Lite WordPress theme before 1.5.5, Viala WordPress theme through 1.3.1, viburno WordPress theme before 1.3.2, Wedding Bride WordPress theme before 1.0.2, Wlow WordPress theme before 1.2.7 suffer from the same issue about the search box reflecting the results causing XSS which allows an unauthenticated attacker to exploit against users if they click a malicious link.

    Published: 4 Sept 2023
    6.1
    Medium

    CVE-2023-4284

    Last Modified: 6 Mar 2025

    The Post Timeline WordPress plugin before 2.2.6 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Sept 2023
    6.1
    Medium

    CVE-2023-4151

    Last Modified: 6 Mar 2025

    The Store Locator WordPress plugin before 1.4.13 does not sanitise and escape an invalid nonce before outputting it back in an AJAX response, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 4 Sept 2023
    4.8
    Medium

    CVE-2023-4253

    Last Modified: 12 May 2025

    The AI ChatBot WordPress plugin before 4.7.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 4 Sept 2023
    4.8
    Medium

    CVE-2023-4254

    Last Modified: 12 May 2025

    The AI ChatBot WordPress plugin before 4.7.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 4 Sept 2023
    4.3
    Medium

    CVE-2023-4269

    Last Modified: 23 Apr 2025

    The User Activity Log WordPress plugin before 1.6.6 lacks proper authorisation when exporting its activity logs, allowing any authenticated users, such as subscriber to perform such action and retrieve PII such as email addresses.

    Published: 4 Sept 2023
    4.3
    Medium

    CVE-2023-4059

    Last Modified: 6 Mar 2025

    The Profile Builder WordPress plugin before 3.9.8 lacks authorisation and CSRF in its page creation function which allows unauthenticated users to create the register, log-in and edit-profile pages from the plugin on the blog

    Published: 4 Sept 2023
    8.3
    High

    CVE-2023-4587

    Last Modified: 21 Nov 2024

    An IDOR vulnerability has been found in ZKTeco ZEM800 product affecting version 6.60. This vulnerability allows a local attacker to obtain registered user backup files or device configuration files over a local network or through a VPN server.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-40214

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Vathemes Business Pro theme <= 1.10.4 versions.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-40196

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ImageRecycle ImageRecycle pdf & image compression plugin <= 3.1.11 versions.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-32296

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Kangu para WooCommerce plugin <= 2.2.9 versions.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-30485

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Solwin Infotech Responsive WordPress Slider – Avartan Slider Lite plugin <= 1.5.3 versions.

    Published: 4 Sept 2023
    7.1
    High

    CVE-2023-40205

    Last Modified: 28 Apr 2026

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Pixelgrade PixTypes plugin <= 1.4.15 versions.

    Published: 4 Sept 2023
    5.9
    Medium

    CVE-2023-40206

    Last Modified: 19 Feb 2025

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in hwk-fr WP 404 Auto Redirect to Similar Post plugin <= 1.0.3 versions.

    Published: 4 Sept 2023
    7.5
    High

    CVE-2023-4616

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to disclose sensitive information on affected installations of LG LED Assistant. Authentication is not required to exploit this vulnerability. The specific flaw exists within the /api/thumbnail endpoint. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose information in the context of the current user.

    Published: 4 Sept 2023