Unknown

    CVE-2023-6661

    https://github.com/cli-ish/CVE-2023-6661

    6.3
    Medium

    CVE-2023-6654

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical was found in PHPEMS 6.x/7.x/8.x/9.0. Affected by this vulnerability is an unknown functionality in the library lib/session.cls.php of the component Session Data Handler. The manipulation leads to deserialization. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-247357 was assigned to this vulnerability.

    Published:10 Dec 2023
    8.1
    High

    CVE-2023-6634

    Last Modified: 8 Apr 2026

    The LearnPress plugin for WordPress is vulnerable to Command Injection in all versions up to, and including, 4.2.5.7 via the get_content function. This is due to the plugin making use of the call_user_func function with user input. This makes it possible for unauthenticated attackers to execute any public function with one parameter, which could result in remote code execution.

    Published:11 Jan 2024
    7.5
    High

    CVE-2023-6595

    Last Modified: 21 Nov 2024

    In WhatsUp Gold versions released before 2023.1, an API endpoint was found to be missing an authentication mechanism. It is possible for an unauthenticated attacker to enumerate ancillary credential information stored within WhatsUp Gold.

    Published:14 Dec 2023
    8.1
    High

    CVE-2023-6572

    Last Modified: 22 May 2025

    Command Injection in GitHub repository gradio-app/gradio prior to main.

    Published:14 Dec 2023
    9.8
    Critical

    CVE-2023-6567

    Last Modified: 8 Apr 2026

    The LearnPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order_by’ parameter in all versions up to, and including, 4.2.5.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published:11 Jan 2024
    9.8
    Critical

    CVE-2023-6553

    Last Modified: 3 Mar 2026

    The Backup Migration plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.3.7 via the /includes/backup-heart.php file. This is due to an attacker being able to control the values passed to an include, and subsequently leverage that to achieve remote code execution. This makes it possible for unauthenticated attackers to easily execute code on the server.

    Source:dangwenjing
    Published:15 Dec 2023
    7
    High

    CVE-2023-6546

    Last Modified: 18 Feb 2026

    A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free problem on a struct gsm_dlci while restarting the gsm mux. This could allow a local unprivileged user to escalate their privileges on the system.

    Published:21 Dec 2023
    7.6
    High

    CVE-2023-6538

    Last Modified: 20 Mar 2024

    SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in Storage, Server or combined Server+Storage administrative roles are able to access SMU configuration backup, that would normally be barred to those specific administrative roles.

    Source:Arslan Masood
    Published:11 Dec 2023
    5.3
    Medium

    CVE-2023-6444

    Last Modified: 1 May 2025

    The Seriously Simple Podcasting WordPress plugin before 3.0.0 discloses the Podcast owner's email address (which by default is the admin email address) via an unauthenticated crafted request.

    Published:11 Mar 2024
    7.5
    High

    CVE-2023-6421

    Last Modified: 18 Jun 2025

    The Download Manager WordPress plugin before 3.2.83 does not protect file download's passwords, leaking it upon receiving an invalid one.

    Published:1 Jan 2024
    5.3
    Medium

    CVE-2023-6401

    Last Modified: 21 Nov 2024

    A vulnerability classified as problematic was found in NotePad++ up to 8.1. Affected by this vulnerability is an unknown functionality of the file dbghelp.exe. The manipulation leads to uncontrolled search path. An attack has to be approached locally. The identifier VDB-246421 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published:30 Nov 2023
    7.5
    High

    CVE-2023-6387

    Last Modified: 15 May 2025

    A potential buffer overflow exists in the Bluetooth LE HCI CPC sample application in the Gecko SDK which may result in a denial of service or remote code execution

    Published:2 Feb 2024
    8.6
    High

    CVE-2023-6360

    Last Modified: 21 Nov 2024

    The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the 'from' and 'to' parameters in the '/my-calendar/v1/events' rest route.

    Published:30 Nov 2023
    8.8
    High

    CVE-2023-6350

    Last Modified: 13 Feb 2025

    Use after free in libavif in Google Chrome prior to 119.0.6045.199 allowed a remote attacker to potentially exploit heap corruption via a crafted avif file. (Chromium security severity: High)

    Published:29 Nov 2023
    9.8
    Critical

    CVE-2023-6329

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability exists in Control iD iDSecure v4.7.32.0. The login routine used by iDS-Core.dll contains a "passwordCustom" option that allows an unauthenticated attacker to compute valid credentials that can be used to bypass authentication and act as an administrative user.

    Published:27 Nov 2023
    9.1
    Critical

    CVE-2023-6319

    Last Modified: 7 Feb 2025

    A command injection vulnerability exists in the getAudioMetadata method from the com.webos.service.attachedstoragemanager service on webOS version 4 through 7. A series of specially crafted requests can lead to command execution as the root user. An attacker can make authenticated requests to trigger this vulnerability. * webOS 4.9.7 - 5.30.40 running on LG43UM7000PLA  * webOS 5.5.0 - 04.50.51 running on OLED55CXPUA  * webOS 6.3.3-442 (kisscurl-kinglake) - 03.36.50 running on OLED48C1PUB  * webOS 7.3.1-43 (mullet-mebin) - 03.33.85 running on OLED55A23LA

    Published:9 Apr 2024
    4.3
    Medium

    CVE-2023-6289

    Last Modified: 7 May 2025

    The Swift Performance Lite WordPress plugin before 2.3.6.15 does not prevent users from exporting the plugin's settings, which may include sensitive information such as Cloudflare API tokens.

    Published:18 Dec 2023
    3.5
    Low

    CVE-2023-6275

    Last Modified: 3 Jun 2025

    A vulnerability was found in TOTVS Fluig Platform 1.6.x/1.7.x/1.8.0/1.8.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /mobileredir/openApp.jsp of the component mobileredir. The manipulation of the argument redirectUrl/user with the input "><script>alert(document.domain)</script> leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.7.1-231128, 1.8.0-231127 and 1.8.1-231127 is able to address this issue. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-246104.

    Published:24 Nov 2023
    8.4
    High

    CVE-2023-6246

    Last Modified: 12 May 2026

    A heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when the openlog function was not called, or called with the ident argument set to NULL, and the program name (the basename of argv[0]) is bigger than 1024 bytes, resulting in an application crash or local privilege escalation. This issue affects glibc 2.36 and newer.

    Published:30 Jan 2024
    7.8
    High

    CVE-2023-6241

    Last Modified: 13 Mar 2025

    Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to exploit a software race condition to perform improper memory processing operations. If the system’s memory is carefully prepared by the user, then this in turn cause a use-after-free.This issue affects Midgard GPU Kernel Driver: from r13p0 through r32p0; Bifrost GPU Kernel Driver: from r11p0 through r25p0; Valhall GPU Kernel Driver: from r19p0 through r25p0, from r29p0 through r46p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r46p0.

    Published:4 Mar 2024
    6.5
    Medium

    CVE-2023-6199

    Last Modified: 19 May 2025

    Book Stack version 23.10.2 allows filtering local files on the server. This is possible because the application is vulnerable to SSRF.

    Published:20 Nov 2023
    7.5
    High

    CVE-2023-6063

    Last Modified: 21 Nov 2024

    The WP Fastest Cache WordPress plugin before 1.2.2 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.

    Published:4 Dec 2023
    9.8
    Critical

    CVE-2023-6036

    Last Modified: 6 May 2025

    The Web3 WordPress plugin before 3.0.0 is vulnerable to an authentication bypass due to incorrect authentication checking in the login flow in functions 'handle_auth_request' and 'hadle_login_request'. This makes it possible for non authenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the username.

    Published:12 Feb 2024
    9.8
    Critical

    CVE-2023-6019

    Last Modified: 12 Apr 2024

    A command injection existed in Ray's cpu_profile URL parameter allowing attackers to execute os commands on the system running the ray dashboard remotely without authentication. The issue is fixed in version 2.8.1+. Ray maintainers' response can be found here: https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023

    Source:Fire_Wolf
    Published:16 Nov 2023
    6.1
    Medium

    CVE-2023-6000

    Last Modified: 18 Jun 2025

    The Popup Builder WordPress plugin before 4.2.3 does not prevent simple visitors from updating existing popups, and injecting raw JavaScript in them, which could lead to Stored XSS attacks.

    Published:1 Jan 2024
    4.9
    Medium

    CVE-2023-5968

    Last Modified: 21 Nov 2024

    Mattermost fails to properly sanitize the user object when updating the username, resulting in the password hash being included in the response body. 

    Published:6 Nov 2023
    4.7
    Medium

    CVE-2023-5966

    Last Modified: 20 Apr 2026

    An authenticated privileged attacker could upload a specially crafted zip to the EspoCRM server in version 7.2.5, via the extension deployment form, which could lead to arbitrary PHP code execution.

    Published:30 Nov 2023
    4.7
    Medium

    CVE-2023-5965

    Last Modified: 20 Apr 2026

    An authenticated privileged attacker could upload a specially crafted zip to the EspoCRM server in version 7.2.5, via the update form, which could lead to arbitrary PHP code execution.

    Published:30 Nov 2023
    8.8
    High

    CVE-2023-5961

    Last Modified: 27 Nov 2024

    A Cross-Site Request Forgery (CSRF) vulnerability has been identified in ioLogik E1200 Series firmware versions v3.3 and prior. An attacker can exploit this vulnerability to trick a client into making an unintentional request to the web server, which will be treated as an authentic request. This vulnerability may lead an attacker to perform operations on behalf of the victimized user.

    Published:23 Dec 2023
    7.6
    High

    CVE-2023-5808

    Last Modified: 21 Nov 2024

    SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in a Storage administrative role are able to access HNAS configuration backup and diagnostic data, that would normally be barred to that specific administrative role.

    Published:4 Dec 2023
    7.8
    High

    CVE-2023-5717

    Last Modified: 25 Feb 2026

    A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be exploited to achieve local privilege escalation. If perf_read_group() is called while an event's sibling_list is smaller than its child's sibling_list, it can increment or write to memory locations outside of the allocated buffer. We recommend upgrading past commit 32671e3799ca2e4590773fd0e63aaa4229e50c06.

    Published:25 Oct 2023
    4.3
    Medium

    CVE-2023-5702

    Last Modified: 14 Mar 2024

    A vulnerability was found in Viessmann Vitogate 300 up to 2.1.3.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /cgi-bin/. The manipulation leads to direct request. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-243140. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Source:ByteHunter
    Published:23 Oct 2023
    5.3
    Medium

    CVE-2023-5612

    Last Modified: 20 Nov 2025

    An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.8.1. It was possible to read the user email address via tags feed although the visibility in the user profile has been disabled.

    Published:26 Jan 2024
    5.3
    Medium

    CVE-2023-5561

    Last Modified: 23 Apr 2025

    WordPress does not properly restrict which user fields are searchable via the REST API, allowing unauthenticated attackers to discern the email addresses of users who have published public posts on an affected website via an Oracle style attack

    Published:16 Oct 2023
    4.3
    Medium

    CVE-2023-5546

    Last Modified: 21 Nov 2024

    ID numbers displayed in the quiz grading report required additional sanitizing to prevent a stored XSS risk.

    Published:9 Nov 2023
    4.7
    Medium

    CVE-2023-5540

    Last Modified: 21 Nov 2024

    A remote code execution risk was identified in the IMSCP activity. By default this was only available to teachers and managers.

    Published:9 Nov 2023
    4.7
    Medium

    CVE-2023-5539

    Last Modified: 21 Nov 2024

    A remote code execution risk was identified in the Lesson activity. By default this was only available to teachers and managers.

    Published:9 Nov 2023
    7.2
    High

    CVE-2023-5538

    Last Modified: 8 Apr 2026

    The MpOperationLogs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the IP Request Headers in versions up to, and including, 1.0.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published:18 Oct 2023
    9.8
    Critical

    CVE-2023-5521

    Last Modified: 21 Nov 2024

    Incorrect Authorization in GitHub repository tiann/kernelsu prior to v0.6.9.

    Published:11 Oct 2023
    8.8
    High

    CVE-2023-5412

    Last Modified: 8 Apr 2026

    The Image horizontal reel scroll slideshow plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to, and including, 13.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers with subscriber-level and above permissions to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published:31 Oct 2023
    9.8
    Critical

    CVE-2023-5360

    Last Modified: 5 Apr 2025

    The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.

    Source:4m3rr0r
    Published:31 Oct 2023
    3.7
    Low

    CVE-2023-5359

    Last Modified: 8 Apr 2026

    The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API secrets stored in plaintext in the publicly visible plugin source. This can allow unauthenticated attackers to impersonate W3 Total Cache and gain access to user account information in successful conditions. This would not impact the WordPress users site in any way.

    Published:24 Sept 2024
    4.3
    Medium

    CVE-2023-5324

    Last Modified: 18 Jun 2025

    A vulnerability has been found in eeroOS up to 6.16.4-11 and classified as critical. This vulnerability affects unknown code of the component Ethernet Interface. The manipulation leads to denial of service. The attack needs to be approached within the local network. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-241024.

    Published:1 Oct 2023
    6.3
    Medium

    CVE-2023-5222

    Last Modified: 14 Mar 2024

    A vulnerability classified as critical was found in Viessmann Vitogate 300 up to 2.1.3.0. This vulnerability affects the function isValidUser of the file /cgi-bin/vitogate.cgi of the component Web Management Interface. The manipulation leads to use of hard-coded password. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-240364. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Source:ByteHunter
    Published:27 Sept 2023
    8.8
    High

    CVE-2023-5217

    Last Modified: 24 Oct 2025

    Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

    Published:27 Sept 2023
    9.8
    Critical

    CVE-2023-5204

    Last Modified: 8 Apr 2026

    The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and including, 4.8.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published:19 Oct 2023
    7.8
    High

    CVE-2023-5180

    Last Modified: 21 Nov 2024

    An issue was discovered in Open Design Alliance Drawings SDK before 2024.12. A corrupted value of number of sectors used by the Fat structure in a crafted DGN file leads to an out-of-bounds write. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published:26 Dec 2023
    8.8
    High

    CVE-2023-5178

    Last Modified: 24 Mar 2026

    A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-after-free and double-free problem, which may permit remote code execution or lead to local privilege escalation.

    Published:15 Oct 2023
    3.7
    Low

    CVE-2023-5142

    Last Modified: 21 Nov 2024

    A vulnerability classified as problematic was found in H3C GR-1100-P, GR-1108-P, GR-1200W, GR-1800AX, GR-2200, GR-3200, GR-5200, GR-8300, ER2100n, ER2200G2, ER3200G2, ER3260G2, ER5100G2, ER5200G2 and ER6300G2 up to 20230908. This vulnerability affects unknown code of the file /userLogin.asp of the component Config File Handler. The manipulation leads to path traversal. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. VDB-240238 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published:24 Sept 2023