6.5
    Medium

    CVE-2023-33145

    Last Modified: 19 Jul 2023

    Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

    Source:nu11secur1ty
    Published:13 Jun 2023
    7.8
    High

    CVE-2023-33137

    Last Modified: 3 Jul 2023

    Microsoft Excel Remote Code Execution Vulnerability

    Source:nu11secur1ty
    Published:13 Jun 2023
    8.8
    High

    CVE-2023-33131

    Last Modified: 7 Jul 2023

    Microsoft Outlook Remote Code Execution Vulnerability

    Source:nu11secur1ty
    Published:13 Jun 2023
    8.4
    High

    CVE-2023-33107

    Last Modified: 28 Oct 2025

    Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

    Published:5 Dec 2023
    7.5
    High

    CVE-2023-33105

    Last Modified: 10 Jan 2025

    Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.

    Published:4 Mar 2024
    7.1
    High

    CVE-2023-32961

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Katie Seaborn Zotpress plugin <= 7.3.3 versions.

    Published:12 Jun 2023
    7.5
    High

    CVE-2023-32784

    Last Modified: 23 Jan 2025

    In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory dump, even when a workspace is locked or no longer running. The memory dump can be a KeePass process dump, swap file (pagefile.sys), hibernation file (hiberfil.sys), or RAM dump of the entire system. The first character cannot be recovered. In 2.54, there is different API usage and/or random string insertion for mitigation.

    Published:15 May 2023
    5.4
    Medium

    CVE-2023-32751

    Last Modified: 31 May 2023

    Pydio Cells through 4.1.2 allows XSS. Pydio Cells implements the download of files using presigned URLs which are generated using the Amazon AWS SDK for JavaScript [1]. The secrets used to sign these URLs are hardcoded and exposed through the JavaScript files of the web application. Therefore, it is possible to generate valid signatures for arbitrary download URLs. By uploading an HTML file and modifying the download URL to serve the file inline instead of as an attachment, any included JavaScript code is executed when the URL is opened in a browser, leading to a cross-site scripting vulnerability.

    Source:RedTeam Pentesting GmbH
    Published:8 Jun 2023
    6.5
    Medium

    CVE-2023-32750

    Last Modified: 31 May 2023

    Pydio Cells through 4.1.2 allows SSRF. For longer running processes, Pydio Cells allows for the creation of jobs, which are run in the background. The job "remote-download" can be used to cause the backend to send a HTTP GET request to a specified URL and save the response to a new file. The response file is then available in a user-specified folder in Pydio Cells.

    Source:RedTeam Pentesting GmbH
    Published:8 Jun 2023
    8.8
    High

    CVE-2023-32749

    Last Modified: 31 May 2023

    Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying the HTTP request sent when creating such an external user, it is possible to assign the new user arbitrary roles. By assigning all roles to a newly created user, access to all cells and non-personal workspaces is granted.

    Source:RedTeam Pentesting GmbH
    Published:8 Jun 2023
    8.8
    High

    CVE-2023-32707

    Last Modified: 9 Oct 2023

    In versions of Splunk Enterprise below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform below version 9.0.2303.100, a low-privileged user who holds a role that has the ‘edit_user’ capability assigned to it can escalate their privileges to that of the admin user by providing specially crafted web requests.

    Source:Redway Security
    Published:1 Jun 2023
    8.8
    High

    CVE-2023-32697

    Last Modified: 5 Mar 2025

    SQLite JDBC is a library for accessing and creating SQLite database files in Java. Sqlite-jdbc addresses a remote code execution vulnerability via JDBC URL. This issue impacting versions 3.6.14.1 through 3.41.2.1 and has been fixed in version 3.41.2.2.

    Published:23 May 2023
    9.8
    Critical

    CVE-2023-32692

    Last Modified: 10 Jan 2025

    CodeIgniter is a PHP full-stack web framework. This vulnerability allows attackers to execute arbitrary code when you use Validation Placeholders. The vulnerability exists in the Validation library, and validation methods in the controller and in-model validation are also vulnerable because they use the Validation library internally. This issue is patched in version 4.3.5.

    Published:30 May 2023
    6.1
    Medium

    CVE-2023-32681

    Last Modified: 13 Feb 2025

    Requests is a HTTP library. Since Requests 2.3.0, Requests has been leaking Proxy-Authorization headers to destination servers when redirected to an HTTPS endpoint. This is a product of how we use `rebuild_proxies` to reattach the `Proxy-Authorization` header to requests. For HTTP connections sent through the tunnel, the proxy will identify the header in the request itself and remove it prior to forwarding to the destination server. However when sent over HTTPS, the `Proxy-Authorization` header must be sent in the CONNECT request as the proxy has no visibility into the tunneled request. This results in Requests forwarding proxy credentials to the destination server unintentionally, allowing a malicious actor to potentially exfiltrate sensitive information. This issue has been patched in version 2.31.0.

    Published:23 May 2023
    7.8
    High

    CVE-2023-32629

    Last Modified: 13 Feb 2025

    Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks when calling ovl_do_setxattr on Ubuntu kernels

    Published:6 Jul 2023
    9.3
    Critical

    CVE-2023-32590

    Last Modified: 28 Apr 2026

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Daniel Söderström / Sidney van de Stouwe Subscribe to Category.This issue affects Subscribe to Category: from n/a through 2.7.4.

    Published:20 Dec 2023
    9.8
    Critical

    CVE-2023-32571

    Last Modified: 6 Dec 2024

    Dynamic Linq 1.0.7.10 through 1.2.25 before 1.3.0 allows attackers to execute arbitrary code and commands when untrusted input to methods including Where, Select, OrderBy is parsed.

    Published:22 Jun 2023
    9.8
    Critical

    CVE-2023-32560

    Last Modified: 4 Sept 2023

    An attacker can send a specially crafted message to the Wavelink Avalanche Manager, which could result in service disruption or arbitrary code execution. Thanks to a Researcher at Tenable for finding and reporting. Fixed in version 6.4.1.

    Source:Robel Campbell
    Published:10 Aug 2023
    7.8
    High

    CVE-2023-32434

    Last Modified: 23 Oct 2025

    An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.5.2, macOS Big Sur 11.7.8, iOS 15.7.7 and iPadOS 15.7.7, macOS Monterey 12.6.7, watchOS 8.8.1, iOS 16.5.1 and iPadOS 16.5.1, macOS Ventura 13.4.1. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.

    Published:23 Jun 2023
    7.8
    High

    CVE-2023-32428

    Last Modified: 13 Feb 2025

    This issue was addressed with improved file handling. This issue is fixed in macOS Ventura 13.4, tvOS 16.5, iOS 16.5 and iPadOS 16.5, watchOS 9.5. An app may be able to gain root privileges.

    Published:6 Sept 2023
    5.5
    Medium

    CVE-2023-32422

    Last Modified: 13 Feb 2025

    This issue was addressed by adding additional SQLite logging restrictions. This issue is fixed in iOS 16.5 and iPadOS 16.5, tvOS 16.5, macOS Ventura 13.4. An app may be able to bypass Privacy preferences.

    Published:23 Jun 2023
    7
    High

    CVE-2023-32413

    Last Modified: 5 Dec 2024

    A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to gain root privileges.

    Published:23 Jun 2023
    5.5
    Medium

    CVE-2023-32407

    Last Modified: 5 Dec 2024

    A logic issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.

    Published:23 Jun 2023
    8.6
    High

    CVE-2023-32364

    Last Modified: 13 Feb 2025

    A logic issue was addressed with improved restrictions. This issue is fixed in macOS Ventura 13.5. A sandboxed process may be able to circumvent sandbox restrictions.

    Published:27 Jul 2023
    7.8
    High

    CVE-2023-32353

    Last Modified: 5 Dec 2024

    A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for Windows. An app may be able to elevate privileges.

    Published:23 Jun 2023
    8.6
    High

    CVE-2023-32315

    Last Modified: 24 Oct 2025

    Openfire is an XMPP server licensed under the Open Source Apache License. Openfire's administrative console, a web-based application, was found to be vulnerable to a path traversal attack via the setup environment. This permitted an unauthenticated user to use the unauthenticated Openfire Setup Environment in an already configured Openfire environment to access restricted pages in the Openfire Admin Console reserved for administrative users. This vulnerability affects all versions of Openfire that have been released since April 2015, starting with version 3.10.0. The problem has been patched in Openfire release 4.7.5 and 4.6.8, and further improvements will be included in the yet-to-be released first version on the 4.8 branch (which is expected to be version 4.8.0). Users are advised to upgrade. If an Openfire upgrade isn’t available for a specific release, or isn’t quickly actionable, users may see the linked github advisory (GHSA-gw42-f939-fhvm) for mitigation advice.

    Published:26 May 2023
    9.8
    Critical

    CVE-2023-32314

    Last Modified: 22 Jan 2025

    vm2 is a sandbox that can run untrusted code with Node's built-in modules. A sandbox escape vulnerability exists in vm2 for versions up to and including 3.9.17. It abuses an unexpected creation of a host object based on the specification of `Proxy`. As a result a threat actor can bypass the sandbox protections to gain remote code execution rights on the host running the sandbox. This vulnerability was patched in the release of version `3.9.18` of `vm2`. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published:15 May 2023
    7.5
    High

    CVE-2023-32309

    Last Modified: 3 Feb 2026

    PyMdown Extensions is a set of extensions for the `Python-Markdown` markdown project. In affected versions an arbitrary file read is possible when using include file syntax. By using the syntax `--8<--"/etc/passwd"` or `--8<--"/proc/self/environ"` the content of these files will be rendered in the generated documentation. Additionally, a path relative to a specified, allowed base path can also be used to render the content of a file outside the specified base paths: `--8<-- "../../../../etc/passwd"`. Within the Snippets extension, there exists a `base_path` option but the implementation is vulnerable to Directory Traversal. The vulnerable section exists in `get_snippet_path(self, path)` lines 155 to 174 in snippets.py. Any readable file on the host where the plugin is executing may have its content exposed. This can impact any use of Snippets that exposes the use of Snippets to external users. It is never recommended to use Snippets to process user-facing, dynamic content. It is designed to process known content on the backend under the control of the host, but if someone were to accidentally enable it for user-facing content, undesired information could be exposed. This issue has been addressed in version 10.0. Users are advised to upgrade. Users unable to upgrade may restrict relative paths by filtering input.

    Published:15 May 2023
    9.8
    Critical

    CVE-2023-32243

    Last Modified: 13 Feb 2025

    Improper Authentication vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation. This issue affects Essential Addons for Elementor: from 5.4.0 through 5.7.1.

    Published:12 May 2023
    7.5
    High

    CVE-2023-32235

    Last Modified: 11 Aug 2025

    Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's folder via /assets/built%2F..%2F..%2F/ directory traversal. This occurs in frontend/web/middleware/static-theme.js.

    Source:İbrahimsql
    Published:5 May 2023
    7.8
    High

    CVE-2023-32233

    Last Modified: 5 May 2025

    In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain root privileges. This occurs because anonymous sets are mishandled.

    Published:2 May 2023
    7.8
    High

    CVE-2023-32163

    Last Modified: 21 Nov 2024

    Wacom Drivers for Windows Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Wacom Drivers for Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Tablet Service. By creating a symbolic link, an attacker can abuse the service to create a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-16857.

    Published:6 Sept 2023
    7.8
    High

    CVE-2023-32162

    Last Modified: 21 Nov 2024

    Wacom Drivers for Windows Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Wacom Drivers for Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of the WacomInstallI.txt file by the PrefUtil.exe utility. The issue results from incorrect permissions on the WacomInstallI.txt file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-16318.

    Published:6 Sept 2023
    9.8
    Critical

    CVE-2023-32117

    Last Modified: 28 Apr 2026

    Missing Authorization vulnerability in SoftLab Integrate Google Drive allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Integrate Google Drive: from n/a through 1.1.99.

    Published:9 Dec 2024
    8.8
    High

    CVE-2023-32073

    Last Modified: 23 Jan 2025

    WWBN AVideo is an open source video platform. In versions 12.4 and prior, a command injection vulnerability exists at `plugin/CloneSite/cloneClient.json.php` which allows Remote Code Execution if you CloneSite Plugin. This is a bypass to the fix for CVE-2023-30854, which affects WWBN AVideo up to version 12.3. This issue is patched in commit 1df4af01f80d56ff2c4c43b89d0bac151e7fb6e3.

    Published:12 May 2023
    9.1
    Critical

    CVE-2023-32070

    Last Modified: 27 Jan 2025

    XWiki Platform is a generic wiki platform. Prior to version 14.6-rc-1, HTML rendering didn't check for dangerous attributes/attribute values. This allowed cross-site scripting (XSS) attacks via attributes and link URLs, e.g., supported in XWiki syntax. This has been patched in XWiki 14.6-rc-1. There are no known workarounds apart from upgrading to a fixed version.

    Published:10 May 2023
    8.8
    High

    CVE-2023-32031

    Last Modified: 28 Feb 2025

    Microsoft Exchange Server Remote Code Execution Vulnerability

    Published:14 Jun 2023
    9.8
    Critical

    CVE-2023-31902

    Last Modified: 22 Jan 2025

    RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE).

    Published:17 May 2023
    8.8
    High

    CVE-2023-31874

    Last Modified: 23 May 2023

    Yank Note (YN) 3.52.1 allows execution of arbitrary code when a crafted file is opened, e.g., via nodeRequire('child_process').

    Source:8bitsec
    Published:28 May 2023
    7.8
    High

    CVE-2023-31873

    Last Modified: 23 May 2023

    Gin 0.7.4 allows execution of arbitrary code when a crafted file is opened, e.g., via require('child_process').

    Source:8bitsec
    Published:28 May 2023
    6.1
    Medium

    CVE-2023-31853

    Last Modified: 21 Nov 2024

    Cudy LT400 1.13.4 is vulnerable Cross Site Scripting (XSS) in /cgi-bin/luci/admin/network/bandwidth via the icon parameter.

    Published:17 Jul 2023
    6.1
    Medium

    CVE-2023-31852

    Last Modified: 7 Jan 2026

    Cudy LT400 1.13.4 is vulnerable to Cross Site Scripting (XSS) in cgi-bin/luci/admin/network/wireless/config via the iface parameter.

    Published:17 Jul 2023
    6.1
    Medium

    CVE-2023-31851

    Last Modified: 21 Nov 2024

    Cudy LT400 1.13.4 is has a cross-site scripting (XSS) vulnerability in /cgi-bin/luci/admin/network/wireless/status via the iface parameter.

    Published:17 Jul 2023
    5.4
    Medium

    CVE-2023-31779

    Last Modified: 28 Jan 2025

    Wekan v6.84 and earlier is vulnerable to Cross Site Scripting (XSS). An attacker with user privilege on kanban board can insert JavaScript code in in "Reaction to comment" feature.

    Published:22 May 2023
    6.7
    Medium

    CVE-2023-31756

    Last Modified: 21 Jan 2025

    A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0. 0.9.1 v5006.0 Build 220518 Rel.32480n which allows remote attackers, authenticated to the administrative web portal as an administrator user to open an operating system level shell via the 'X_TP_IfName' parameter.

    Published:19 May 2023
    9.8
    Critical

    CVE-2023-31753

    Last Modified: 21 Nov 2024

    SQL injection vulnerability in diskusi.php in eNdonesia 8.7, allows an attacker to execute arbitrary SQL commands via the "rid=" parameter.

    Published:20 Jul 2023
    7.8
    High

    CVE-2023-31748

    Last Modified: 23 May 2023

    Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file.

    Source:Thurein Soe
    Published:24 May 2023
    7.8
    High

    CVE-2023-31747

    Last Modified: 25 May 2023

    Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.

    Source:Thurein Soe
    Published:23 May 2023
    7.5
    High

    CVE-2023-31726

    Last Modified: 13 Feb 2026

    AList 3.15.1 is vulnerable to Incorrect Access Control, which can be exploited by attackers to obtain sensitive information.

    Published:23 May 2023
    9.8
    Critical

    CVE-2023-31719

    Last Modified: 21 Nov 2024

    FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.

    Published:21 Sept 2023