6.1
    Medium

    CVE-2023-43263

    Last Modified: 21 Nov 2024

    A Cross-site scripting (XSS) vulnerability in Froala Editor v.4.1.1 allows attackers to execute arbitrary code via the Markdown component.

    Published:26 Sept 2023
    7.5
    High

    CVE-2023-43261

    Last Modified: 4 Jul 2026

    An information disclosure in Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 allows attackers to access sensitive router components.

    Published:4 Oct 2023
    9.8
    Critical

    CVE-2023-43208

    Last Modified: 31 Oct 2025

    NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is caused by the incomplete patch of CVE-2023-37679.

    Published:26 Oct 2023
    9.8
    Critical

    CVE-2023-43177

    Last Modified: 21 Nov 2024

    CrushFTP prior to 10.5.1 is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes.

    Published:17 Nov 2023
    9.8
    Critical

    CVE-2023-43154

    Last Modified: 21 Nov 2024

    In Macrob7 Macs Framework Content Management System (CMS) 1.1.4f, loose comparison in "isValidLogin()" function during login attempt results in PHP type confusion vulnerability that leads to authentication bypass and takeover of the administrator account.

    Published:26 Sept 2023
    8.8
    High

    CVE-2023-43149

    Last Modified: 21 Nov 2024

    SPA-Cart 1.9.0.3 is vulnerable to Cross Site Request Forgery (CSRF) that allows a remote attacker to add an admin user with role status.

    Published:12 Oct 2023
    8.1
    High

    CVE-2023-43148

    Last Modified: 21 Nov 2024

    SPA-Cart 1.9.0.3 has a Cross Site Request Forgery (CSRF) vulnerability that allows a remote attacker to delete all accounts.

    Published:12 Oct 2023
    8.8
    High

    CVE-2023-43147

    Last Modified: 21 Nov 2024

    PHPJabbers Limo Booking Software 1.0 is vulnerable to Cross Site Request Forgery (CSRF) to add an admin user via the Add Users Function, aka an index.php?controller=pjAdminUsers&action=pjActionCreate URI.

    Published:12 Oct 2023
    9.8
    Critical

    CVE-2023-43144

    Last Modified: 21 Nov 2024

    Projectworldsl Assets-management-system-in-php 1.0 is vulnerable to SQL Injection via the "id" parameter in delete.php.

    Published:22 Sept 2023
    8.8
    High

    CVE-2023-43115

    Last Modified: 21 Nov 2024

    In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

    Published:18 Sept 2023
    6.5
    Medium

    CVE-2023-43040

    Last Modified: 4 Nov 2025

    IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

    Published:26 Sept 2023
    8.3
    High

    CVE-2023-42931

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6.3, macOS Sonoma 14.2, macOS Monterey 12.7.2. A process may gain admin privileges without proper authentication.

    Published:28 Mar 2024
    7.7
    High

    CVE-2023-42860

    Last Modified: 4 Nov 2025

    A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. An app may be able to modify protected parts of the file system.

    Published:21 Feb 2024
    5.5
    Medium

    CVE-2023-42829

    Last Modified: 16 Jun 2025

    The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to access SSH passphrases.

    Published:10 Jan 2024
    7.8
    High

    CVE-2023-42824

    Last Modified: 5 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in iOS 16.7.1 and iPadOS 16.7.1. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.6.

    Published:4 Oct 2023
    7
    High

    CVE-2023-42820

    Last Modified: 21 Nov 2024

    JumpServer is an open source bastion host. This vulnerability is due to exposing the random number seed to the API, potentially allowing the randomly generated verification codes to be replayed, which could lead to password resets. If MFA is enabled users are not affect. Users not using local authentication are also not affected. Users are advised to upgrade to either version 2.28.19 or to 3.6.5. There are no known workarounds or this issue.

    Published:26 Sept 2023
    8.9
    High

    CVE-2023-42819

    Last Modified: 21 Nov 2024

    JumpServer is an open source bastion host. Logged-in users can access and modify the contents of any file on the system. A user can use the 'Job-Template' menu and create a playbook named 'test'. Get the playbook id from the detail page, like 'e0adabef-c38f-492d-bd92-832bacc3df5f'. An attacker can exploit the directory traversal flaw using the provided URL to access and retrieve the contents of the file. `https://jumpserver-ip/api/v1/ops/playbook/e0adabef-c38f-492d-bd92-832bacc3df5f/file/?key=../../../../../../../etc/passwd` a similar method to modify the file content is also present. This issue has been addressed in version 3.6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published:26 Sept 2023
    9.8
    Critical

    CVE-2023-42793

    Last Modified: 14 Mar 2024

    In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible

    Source:ByteHunter
    Published:19 Sept 2023
    8.6
    High

    CVE-2023-42791

    Last Modified: 16 Dec 2024

    A relative path traversal in Fortinet FortiManager version 7.4.0 and 7.2.0 through 7.2.3 and 7.0.0 through 7.0.8 and 6.4.0 through 6.4.12 and 6.2.0 through 6.2.11 allows attacker to execute unauthorized code or commands via crafted HTTP requests.

    Published:20 Feb 2024
    9.3
    Critical

    CVE-2023-42789

    Last Modified: 8 Jul 2026

    A out-of-bounds write vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 through 7.0.12, FortiOS 6.4.0 through 6.4.14, FortiOS 6.2.0 through 6.2.15, FortiProxy 7.4.0, FortiProxy 7.2.0 through 7.2.6, FortiProxy 7.0.0 through 7.0.12, FortiProxy 2.0.0 through 2.0.13, FortiSASE 23.2.b allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.

    Published:12 Mar 2024
    9.8
    Critical

    CVE-2023-42471

    Last Modified: 21 Nov 2024

    The wave.ai.browser application through 1.0.35 for Android allows a remote attacker to execute arbitrary JavaScript code via a crafted intent. It contains a manifest entry that exports the wave.ai.browser.ui.splash.SplashScreen activity. This activity uses a WebView component to display web content and doesn't adequately validate or sanitize the URI or any extra data passed in the intent by a third party application (with no permissions).

    Published:11 Sept 2023
    9.8
    Critical

    CVE-2023-42470

    Last Modified: 21 Nov 2024

    The Imou Life com.mm.android.smartlifeiot application through 6.8.0 for Android allows Remote Code Execution via a crafted intent to an exported component. This relates to the com.mm.android.easy4ip.MainActivity activity. JavaScript execution is enabled in the WebView, and direct web content loading occurs.

    Published:11 Sept 2023
    3.3
    Low

    CVE-2023-42469

    Last Modified: 21 Nov 2024

    The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.full.dialer.top.secure.encrypted.activities.DialerActivity component.

    Published:13 Sept 2023
    5.3
    Medium

    CVE-2023-42468

    Last Modified: 21 Nov 2024

    The com.cutestudio.colordialer application through 2.1.8-2 for Android allows a remote attacker to initiate phone calls without user consent, because of improper export of the com.cutestudio.dialer.activities.DialerActivity component. A third-party application (without any permissions) can craft an intent targeting com.cutestudio.dialer.activities.DialerActivity via the android.intent.action.CALL action in conjunction with a tel: URI, thereby placing a phone call.

    Published:13 Sept 2023
    8.2
    High

    CVE-2023-42442

    Last Modified: 21 Nov 2024

    JumpServer is an open source bastion host and a professional operation and maintenance security audit system. Starting in version 3.0.0 and prior to versions 3.5.5 and 3.6.4, session replays can download without authentication. Session replays stored in S3, OSS, or other cloud storage are not affected. The api `/api/v1/terminal/sessions/` permission control is broken and can be accessed anonymously. SessionViewSet permission classes set to `[RBACPermission | IsSessionAssignee]`, relation is or, so any permission matched will be allowed. Versions 3.5.5 and 3.6.4 have a fix. After upgrading, visit the api `$HOST/api/v1/terminal/sessions/?limit=1`. The expected http response code is 401 (`not_authenticated`).

    Published:15 Sept 2023
    6.1
    Medium

    CVE-2023-42426

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in Froala Froala Editor v.4.1.1 allows remote attackers to execute arbitrary code via the 'Insert link' parameter in the 'Insert Image' component.

    Published:25 Sept 2023
    Unknown

    CVE-2023-42413

    https://github.com/chenghao-hao/cve-2023-42413

    5.4
    Medium

    CVE-2023-42362

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in Teller Web App v.4.4.0 allows a remote attacker to execute arbitrary commands and obtain sensitive information via uploading a crafted file.

    Published:14 Sept 2023
    8.8
    High

    CVE-2023-42326

    Last Modified: 21 Nov 2024

    An issue in Netgate pfSense v.2.7.0 allows a remote attacker to execute arbitrary code via a crafted request to the interfaces_gif_edit.php and interfaces_gre_edit.php components.

    Published:14 Nov 2023
    9.8
    Critical

    CVE-2023-42284

    Last Modified: 21 Nov 2024

    Blind SQL injection in api_version parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via a crafted SQL query.

    Published:7 Nov 2023
    9.8
    Critical

    CVE-2023-42283

    Last Modified: 21 Nov 2024

    Blind SQL injection in api_id parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via a crafted SQL query.

    Published:7 Nov 2023
    8.8
    High

    CVE-2023-42222

    Last Modified: 21 Nov 2024

    WebCatalog before 49.0 is vulnerable to Incorrect Access Control. WebCatalog calls the Electron shell.openExternal function without verifying that the URL is for an http or https resource, in some circumstances.

    Published:28 Sept 2023
    9.8
    Critical

    CVE-2023-42115

    Last Modified: 7 Aug 2025

    Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

    Published:27 Sept 2023
    8.8
    High

    CVE-2023-41993

    Last Modified: 5 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.

    Published:21 Sept 2023
    7.8
    High

    CVE-2023-41992

    Last Modified: 5 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, macOS Ventura 13.6. A local attacker may be able to elevate their privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.

    Published:21 Sept 2023
    5.5
    Medium

    CVE-2023-41991

    Last Modified: 5 Nov 2025

    A certificate validation issue was addressed. This issue is fixed in macOS Ventura 13.6, iOS 16.7 and iPadOS 16.7. A malicious app may be able to bypass signature validation. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.

    Published:21 Sept 2023
    8.6
    High

    CVE-2023-41898

    Last Modified: 21 Nov 2024

    Home assistant is an open source home automation. The Home Assistant Companion for Android app up to version 2023.8.2 is vulnerable to arbitrary URL loading in a WebView. This enables all sorts of attacks, including arbitrary JavaScript execution, limited native code execution, and credential theft. This issue has been patched in version 2023.9.2 and all users are advised to upgrade. There are no known workarounds for this vulnerability. This issue is also tracked as GitHub Security Lab (GHSL) Vulnerability Report: `GHSL-2023-142`.

    Published:19 Oct 2023
    10
    Critical

    CVE-2023-41892

    Last Modified: 13 Feb 2025

    Craft CMS is a platform for creating digital experiences. This is a high-impact, low-complexity attack vector. Users running Craft installations before 4.4.15 are encouraged to update to at least that version to mitigate the issue. This issue has been fixed in Craft CMS 4.4.15.

    Published:13 Sept 2023
    7.8
    High

    CVE-2023-41772

    Last Modified: 14 Apr 2025

    Win32k Elevation of Privilege Vulnerability

    Published:10 Oct 2023
    5.5
    Medium

    CVE-2023-41717

    Last Modified: 21 Nov 2024

    Inappropriate file type control in Zscaler Proxy versions 3.6.1.25 and prior allows local attackers to bypass file download/upload restrictions.

    Published:31 Aug 2023
    8.2
    High

    CVE-2023-41652

    Last Modified: 29 Apr 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David F. Carr RSVPMaker rsvpmaker allows SQL Injection.This issue affects RSVPMaker: from n/a through 10.6.6.

    Published:3 Nov 2023
    5.3
    Medium

    CVE-2023-41646

    Last Modified: 21 Nov 2024

    Buttercup v2.20.3 allows attackers to obtain the hash of the master password for the password manager via accessing the file /vaults.json/

    Published:7 Sept 2023
    7.2
    High

    CVE-2023-41623

    Last Modified: 21 Nov 2024

    Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php.

    Published:12 Dec 2023
    5.4
    Medium

    CVE-2023-41593

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in Dairy Farm Shop Management System Using PHP and MySQL v1.1 allow attackers to execute arbitrary web scripts and HTML via a crafted payload injected into the Category and Category Field parameters.

    Published:11 Sept 2023
    5.4
    Medium

    CVE-2023-41575

    Last Modified: 21 Nov 2024

    Multiple stored cross-site scripting (XSS) vulnerabilities in /bbdms/sign-up.php of Blood Bank & Donor Management v2.2 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Full Name, Message, or Address parameters.

    Published:8 Sept 2023
    6.1
    Medium

    CVE-2023-41564

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the Upload Asset function of Cockpit CMS v2.6.3 allows attackers to execute arbitrary code via uploading a crafted .shtml file.

    Published:8 Sept 2023
    Unknown

    CVE-2023-41535

    https://github.com/Sh33talUmath/CVE-2023-41535

    Unknown

    CVE-2023-41534

    https://github.com/Sh33talUmath/CVE-2023-41534

    Unknown

    CVE-2023-41533

    https://github.com/Sh33talUmath/CVE-2023-41533

    9.8
    Critical

    CVE-2023-41508

    Last Modified: 21 Nov 2024

    A hard coded password in Super Store Finder v3.6 allows attackers to access the administration panel.

    Published:5 Sept 2023