Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2024-22050 |
|
Path Traversal in path-traversal (CVE-2024-22050)
path traversal in path-traversal (CVE-2024-22050). Confidential information can be exposed externally.
|
| CVE-2024-0241 |
|
Vulnerability in rails (CVE-2024-0241)
vulnerability in rails (CVE-2024-0241). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-21909 |
|
Vulnerability in dos (CVE-2024-21909)
vulnerability in dos (CVE-2024-21909). Risk of unauthorized operations or information disclosure.
|
| CVE-2024-21907 |
|
Vulnerability in dos (CVE-2024-21907)
vulnerability in dos (CVE-2024-21907). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-45559 |
|
Vulnerability in linecorp (CVE-2023-45559)
vulnerability in linecorp (CVE-2023-45559). Confidential information can be exposed externally.
|
| CVE-2023-37607 |
|
Path Traversal in path-traversal (CVE-2023-37607)
path traversal in path-traversal (CVE-2023-37607). Confidential information can be exposed externally.
|
| CVE-2023-37608 |
|
Vulnerability in automaticsystems (CVE-2023-37608)
vulnerability in automaticsystems (CVE-2023-37608). Confidential information can be exposed externally.
|
| CVE-2024-0193 |
|
Use-After-Free in redhat (CVE-2024-0193)
vulnerability in redhat (CVE-2024-0193). Successful exploitation can lead to full system takeover.
|
| CVE-2023-7101 KEV |
|
[KEV] Vulnerability in Spreadsheet::parseexcel spreadsheetparseexcel (CVE-2023-7101)
vulnerability in Spreadsheet::parseexcel spreadsheetparseexcel (CVE-2023-7101). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-7024 KEV |
|
[KEV] Out-of-Bounds Write in Google chromium-webrtc (CVE-2023-7024)
out-of-bounds write in Google chromium-webrtc (CVE-2023-7024). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-17163 |
|
Visual Studio Code Python Extension Remote Code Execution Vulnerability
Visual Studio Code Python Extension Remote Code Execution Vulnerability
|
| CVE-2023-46987 |
|
Code Injection in seacms (CVE-2023-46987)
code injection in seacms (CVE-2023-46987). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51767 |
|
Vulnerability in openbsd (CVE-2023-51767)
vulnerability in openbsd (CVE-2023-51767). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6546 |
|
Vulnerability in linux (CVE-2023-6546)
vulnerability in linux (CVE-2023-6546). Successful exploitation can lead to full system takeover.
|
| CVE-2023-49897 KEV |
|
[KEV] OS Command Injection in Fxc ae1021 (CVE-2023-49897)
OS command injection in Fxc ae1021 (CVE-2023-49897). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-47565 KEV |
|
[KEV] OS Command Injection in Qnap viostor-nvr (CVE-2023-47565)
OS command injection in Qnap viostor-nvr (CVE-2023-47565). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-6931 |
|
Out-of-Bounds Write in privilege-escalation (CVE-2023-6931)
out-of-bounds write in privilege-escalation (CVE-2023-6931). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6932 |
|
Use-After-Free in privilege-escalation (CVE-2023-6932)
vulnerability in privilege-escalation (CVE-2023-6932). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6817 |
|
Use-After-Free in privilege-escalation (CVE-2023-6817)
vulnerability in privilege-escalation (CVE-2023-6817). Successful exploitation can lead to full system takeover.
|
| CVE-2023-47320 |
|
Authorization Flaw in silverpeas (CVE-2023-47320)
vulnerability in silverpeas (CVE-2023-47320). Data can be tampered with by attackers.
|
| CVE-2023-47322 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2023-47322)
vulnerability in csrf (CVE-2023-47322). Successful exploitation can lead to full system takeover.
|
| CVE-2023-47323 |
|
Vulnerability in silverpeas (CVE-2023-47323)
vulnerability in silverpeas (CVE-2023-47323). Confidential information can be exposed externally.
|
| CVE-2023-47326 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2023-47326)
vulnerability in csrf (CVE-2023-47326). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6478 |
|
Vulnerability in xorg (CVE-2023-6478)
vulnerability in xorg (CVE-2023-6478). Confidential information can be exposed externally.
|
| CVE-2023-6377 |
|
Out-of-Bounds Read in privilege-escalation (CVE-2023-6377)
vulnerability in privilege-escalation (CVE-2023-6377). Successful exploitation can lead to full system takeover.
|
| CVE-2023-5379 |
|
Vulnerability in dos (CVE-2023-5379)
vulnerability in dos (CVE-2023-5379). Confidential information can be exposed externally.
|
| CVE-2023-6448 KEV |
|
[KEV] Vulnerability in Unitronics vision-plc-and-hmi (CVE-2023-6448)
vulnerability in Unitronics vision-plc-and-hmi (CVE-2023-6448). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-6610 |
|
Out-of-Bounds Read in c (CVE-2023-6610)
vulnerability in c (CVE-2023-6610). Confidential information can be exposed externally.
|
| CVE-2023-33411 |
|
Path Traversal in path-traversal (CVE-2023-33411)
path traversal in path-traversal (CVE-2023-33411). Confidential information can be exposed externally.
|
| CVE-2023-33412 |
|
Vulnerability in supermicro (CVE-2023-33412)
vulnerability in supermicro (CVE-2023-33412). Successful exploitation can lead to full system takeover.
|
| CVE-2023-33413 |
|
Vulnerability in supermicro (CVE-2023-33413)
vulnerability in supermicro (CVE-2023-33413). Successful exploitation can lead to full system takeover.
|
| CVE-2023-43303 |
|
Vulnerability in linecorp (CVE-2023-43303)
vulnerability in linecorp (CVE-2023-43303). Confidential information can be exposed externally.
|
| CVE-2023-41266 KEV |
|
[KEV] Path Traversal in Qlik sense (CVE-2023-41266)
path traversal in Qlik sense (CVE-2023-41266). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2023-33107 KEV |
|
[KEV] Vulnerability in Qualcomm multiple-chipsets (CVE-2023-33107)
vulnerability in Qualcomm multiple-chipsets (CVE-2023-33107). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-33106 KEV |
|
[KEV] Vulnerability in Qualcomm multiple-chipsets (CVE-2023-33106)
vulnerability in Qualcomm multiple-chipsets (CVE-2023-33106). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-33063 KEV |
|
[KEV] Use-After-Free in :linux_kernel:Qualcomm (CVE-2023-33063)
vulnerability in :linux_kernel:Qualcomm (CVE-2023-33063). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `SoCVersion:2023-12-05` or later.
|
| CVE-2022-22071 KEV |
|
[KEV] Use-After-Free in Qualcomm multiple-chipsets (CVE-2022-22071)
vulnerability in Qualcomm multiple-chipsets (CVE-2022-22071). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-42917 KEV |
|
[KEV] Out-of-Bounds Write in Apple java (CVE-2023-42917)
out-of-bounds write in Apple java (CVE-2023-42917). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `1.8.0, 8.0.411` or later.
|
| CVE-2023-42916 KEV |
|
[KEV] Out-of-Bounds Read in Apple multiple-products (CVE-2023-42916)
vulnerability in Apple multiple-products (CVE-2023-42916). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-5637 |
|
Unrestricted File Upload in arslansoft-education-portal-project (CVE-2023-5637)
vulnerability in arslansoft-education-portal-project (CVE-2023-5637). Confidential information can be exposed externally.
|
| CVE-2023-5635 |
|
Vulnerability in arslansoft-education-portal-project (CVE-2023-5635)
vulnerability in arslansoft-education-portal-project (CVE-2023-5635). Confidential information can be exposed externally.
|
| CVE-2023-49081 |
|
Vulnerability in aiohttp (CVE-2023-49081)
vulnerability in aiohttp (CVE-2023-49081). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-6345 KEV |
|
[KEV] Vulnerability in Google chromium-skia (CVE-2023-6345)
vulnerability in Google chromium-skia (CVE-2023-6345). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-49103 KEV |
|
[KEV] Vulnerability in owncloud (CVE-2023-49103)
vulnerability in owncloud (CVE-2023-49103). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-24294 |
|
Vulnerability in zumtobel (CVE-2023-24294)
vulnerability in zumtobel (CVE-2023-24294). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-6201 |
|
OS Command Injection in univera (CVE-2023-6201)
OS command injection in univera (CVE-2023-6201). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6150 |
|
Privilege Escalation in eskom (CVE-2023-6150)
vulnerability in eskom (CVE-2023-6150). Confidential information can be exposed externally.
|
| CVE-2023-6151 |
|
Privilege Escalation in eskom (CVE-2023-6151)
vulnerability in eskom (CVE-2023-6151). Confidential information can be exposed externally.
|
| CVE-2023-6118 |
|
Path Traversal in path-traversal (CVE-2023-6118)
path traversal in path-traversal (CVE-2023-6118). Confidential information can be exposed externally.
|
| CVE-2023-48105 |
|
Out-of-Bounds Write in c (CVE-2023-48105)
out-of-bounds write in c (CVE-2023-48105). Risk of unauthorized operations or information disclosure.
|