Lista CVE - 2023 / Luglio
Visualizzazione 2101 - 2200 di 2295 CVE per Luglio 2023 (Pagina 22 di 23)
ID CVE | Data | Titolo |
---|---|---|
CVE-2023-37993 | 2023-07-27 | WordPress wpShopGermany IT-RECHT KANZLEI Plugin <= 1.7 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37981 | 2023-07-27 | WordPress Authors List Plugin <= 2.0.2 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37980 | 2023-07-27 | WordPress Custom Field For WP Job Manager Plugin <= 1.1 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37979 | 2023-07-27 | WordPress Ninja Forms Plugin <= 3.6.25 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37977 | 2023-07-27 | WordPress WPFunnels Plugin <= 2.7.16 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37976 | 2023-07-27 | WordPress Radio Forge Muses Player with Skins Plugin <= 2.5 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37975 | 2023-07-27 | WordPress Variation Swatches for WooCommerce Plugin <= 2.3.7 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-37970 | 2023-07-27 | WordPress MF Gig Calendar Plugin <= 1.2 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-38488 | 2023-07-27 | Kirby vulnerable to field injection in the KirbyData text storage handler |
CVE-2023-3973 | 2023-07-27 | Cross-site Scripting (XSS) - Reflected in jgraph/drawio |
CVE-2023-3974 | 2023-07-27 | OS Command Injection in jgraph/drawio |
CVE-2023-3975 | 2023-07-27 | OS Command Injection in jgraph/drawio |
CVE-2023-37894 | 2023-07-27 | WordPress Variation Images Gallery for WooCommerce Plugin <= 2.3.3 is vulnerable to Cross Site Scripting (XSS) |
CVE-2023-38489 | 2023-07-27 | Kirby vulnerable to Insufficient Session Expiration after a password change |
CVE-2023-38490 | 2023-07-27 | Kirby XML External Entity (XXE) vulnerability in the XML data handler |
CVE-2023-38491 | 2023-07-27 | Kirby vulnerable to Cross-site scripting (XSS) from MIME type auto-detection of uploaded files |
CVE-2023-38492 | 2023-07-27 | Kirby vulnerable to denial of service from unlimited password lengths |
CVE-2023-37900 | 2023-07-27 | Crossplane vulnerable to denial of service from large image |
CVE-2023-38495 | 2023-07-27 | Crossplane vulnerable to possible image tampering from missing image validation for Packages |
CVE-2023-38504 | 2023-07-27 | Sails DoS vulnerability for apps with sockets enabled |
CVE-2023-3980 | 2023-07-27 | Cross-site Scripting (XSS) - Stored in omeka/omeka-s |
CVE-2023-3981 | 2023-07-27 | Server-Side Request Forgery (SSRF) in omeka/omeka-s |
CVE-2023-3982 | 2023-07-27 | Cross-site Scripting (XSS) - Stored in omeka/omeka-s |
CVE-2023-38505 | 2023-07-27 | DietPi-Dashboard Insufficient TLS Handshake Pool |
CVE-2023-38509 | 2023-07-27 | XWiki Platform's obfuscated email addresses should not be sorted |
CVE-2023-38510 | 2023-07-27 | Tolgee Lacks Permission Check for API Key for some endpoints |
CVE-2023-23764 | 2023-07-27 | Incorrect comparison vulnerability in GitHub Enterprise Server leading to commit smuggling |
CVE-2022-43701 | 2023-07-27 | Insecure directory permissions on installer files |
CVE-2022-43702 | 2023-07-27 | Incomplete verification of installation file signature |
CVE-2022-43703 | 2023-07-27 | Incomplete verification of installation file signature |
CVE-2022-31454 | 2023-07-28 | Yii 2 v2.0.45 was discovered to contain a cross-site scripting... |
CVE-2023-31932 | 2023-07-28 | Sql injection vulnerability found in Rail Pass Management System v.1.0... |
CVE-2023-31933 | 2023-07-28 | Sql injection vulnerability found in Rail Pass Management System v.1.0... |
CVE-2023-31934 | 2023-07-28 | Cross Site Scripting vulnerability found in Rail Pass Management System... |
CVE-2023-31935 | 2023-07-28 | Cross Site Scripting vulnerability found in Rail Pass Management System... |
CVE-2023-31936 | 2023-07-28 | Sql injection vulnerability found in Rail Pass Management System v.1.0... |
CVE-2023-31937 | 2023-07-28 | Sql injection vulnerability found in Rail Pass Management System v.1.0... |
CVE-2023-37754 | 2023-07-28 | PowerJob v4.3.3 was discovered to contain a remote command execution... |
CVE-2023-38331 | 2023-07-28 | Zoho ManageEngine Support Center Plus 14001 and below is vulnerable... |
CVE-2023-38988 | 2023-07-28 | An issue in the delete function in the OaNotifyController class... |
CVE-2023-38992 | 2023-07-28 | jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability... |
CVE-2023-39010 | 2023-07-28 | BoofCV 0.42 was discovered to contain a code injection vulnerability... |
CVE-2023-39013 | 2023-07-28 | Duke v1.2 and below was discovered to contain a code... |
CVE-2023-39015 | 2023-07-28 | webmagic-extension v0.9.0 and below was discovered to contain a code... |
CVE-2023-39016 | 2023-07-28 | bboss-persistent v6.0.9 and below was discovered to contain a code... |
CVE-2023-39017 | 2023-07-28 | quartz-jobs 2.3.2 and below was discovered to contain a code... |
CVE-2023-39018 | 2023-07-28 | FFmpeg 0.7.0 and below was discovered to contain a code... |
CVE-2023-39020 | 2023-07-28 | stanford-parser v3.9.2 and below was discovered to contain a code... |
CVE-2023-39021 | 2023-07-28 | wix-embedded-mysql v4.6.1 and below was discovered to contain a code... |
CVE-2023-39022 | 2023-07-28 | oscore v2.2.6 and below was discovered to contain a code... |
CVE-2023-39023 | 2023-07-28 | university compass v2.2.0 and below was discovered to contain a... |
CVE-2023-3774 | 2023-07-28 | Vault Enterprise Namespace Creation May Lead to Denial of Service |
CVE-2023-3984 | 2023-07-28 | phpscriptpoint RecipePoint recipe-result sql injection |
CVE-2023-34425 | 2023-07-28 | The issue was addressed with improved memory handling. This issue... |
CVE-2023-32427 | 2023-07-28 | This issue was addressed by using HTTPS when sending information... |
CVE-2023-38601 | 2023-07-28 | This issue was addressed by removing the vulnerable code. This... |
CVE-2023-38590 | 2023-07-28 | A buffer overflow issue was addressed with improved memory handling.... |
CVE-2023-32444 | 2023-07-28 | A logic issue was addressed with improved validation. This issue... |
CVE-2023-38571 | 2023-07-28 | This issue was addressed with improved validation of symlinks. This... |
CVE-2023-32445 | 2023-07-28 | This issue was addressed with improved checks. This issue is... |
CVE-2023-38592 | 2023-07-28 | A logic issue was addressed with improved restrictions. This issue... |
CVE-2023-36495 | 2023-07-28 | An integer overflow was addressed with improved input validation. This... |
CVE-2023-38599 | 2023-07-28 | A logic issue was addressed with improved state management. This... |
CVE-2023-38604 | 2023-07-28 | An out-of-bounds write issue was addressed with improved input validation.... |
CVE-2023-28203 | 2023-07-28 | The issue was addressed with improved checks. This issue is... |
CVE-2023-38598 | 2023-07-28 | A use-after-free issue was addressed with improved memory management. This... |
CVE-2023-38609 | 2023-07-28 | An injection issue was addressed with improved input validation. This... |
CVE-2023-32654 | 2023-07-28 | A logic issue was addressed with improved state management. This... |
CVE-2023-37285 | 2023-07-28 | An out-of-bounds read was addressed with improved bounds checking. This... |
CVE-2023-3985 | 2023-07-28 | SourceCodester Online Jewelry Store login.php sql injection |
CVE-2023-3977 | 2023-07-28 | Several plugins for WordPress by Inisev are vulnerable to Cross-Site... |
CVE-2023-0958 | 2023-07-28 | Several plugins for WordPress by Inisev are vulnerable to unauthorized... |
CVE-2023-3986 | 2023-07-28 | SourceCodester Simple Online Mens Salon Management System cross site scripting |
CVE-2023-3987 | 2023-07-28 | SourceCodester Simple Online Mens Salon Management System sql injection |
CVE-2023-3988 | 2023-07-28 | Cafe Billing System Order index.php sql injection |
CVE-2023-3989 | 2023-07-28 | SourceCodester Jewelry Store System add_customer.php cross site scripting |
CVE-2023-3990 | 2023-07-28 | Mingsoft MCMS HTTP POST Request search.do cross site scripting |
CVE-2023-3670 | 2023-07-28 | Codesys: Vulnerability in CODESYS Development System and CODESYS Scripting |
CVE-2023-2685 | 2023-07-28 | Unquoted Service Path in ABB AO-OPC |
CVE-2023-37467 | 2023-07-28 | Discourse CSP nonce reuse vulnerability for anonymous users |
CVE-2023-37904 | 2023-07-28 | Discourse Race Condition in Accept Invite |
CVE-2023-37906 | 2023-07-28 | Discourse vulnerable to DoS via post edit reason |
CVE-2023-38498 | 2023-07-28 | Discourse vulnerable to DoS via defer queue |
CVE-2023-38684 | 2023-07-28 | Discourse vulnerable to ossible DDoS due to unbounded limits in various controller actions |
CVE-2023-38685 | 2023-07-28 | Discourse's restricted tag information visible to unauthenticated users |
CVE-2023-3488 | 2023-07-28 | Uninitialized variable in Gecko Bootloader can leak secure stack |
CVE-2023-3598 | 2023-07-28 | Out of bounds read and write in ANGLE in Google... |
CVE-2022-4906 | 2023-07-28 | Inappropriate implementation in Blink in Google Chrome prior to 108.0.5359.71... |
CVE-2022-4907 | 2023-07-28 | Uninitialized Use in FFmpeg in Google Chrome prior to 108.0.5359.71... |
CVE-2022-4908 | 2023-07-28 | Inappropriate implementation in iFrame Sandbox in Google Chrome prior to... |
CVE-2022-4909 | 2023-07-28 | Inappropriate implementation in XML in Google Chrome prior to 107.0.5304.62... |
CVE-2022-4910 | 2023-07-28 | Inappropriate implementation in Autofill in Google Chrome prior to 107.0.5304.62... |
CVE-2022-4911 | 2023-07-28 | Insufficient data validation in DevTools in Google Chrome prior to... |
CVE-2022-4912 | 2023-07-28 | Type Confusion in MathML in Google Chrome prior to 105.0.5195.52... |
CVE-2022-4913 | 2023-07-28 | Inappropriate implementation in Extensions in Google Chrome prior to 105.0.5195.52... |
CVE-2022-4914 | 2023-07-28 | Heap buffer overflow in PrintPreview in Google Chrome prior to... |
CVE-2022-4915 | 2023-07-28 | Inappropriate implementation in URL Formatting in Google Chrome prior to... |
CVE-2022-4916 | 2023-07-28 | Use after free in Media in Google Chrome prior to... |
CVE-2022-4917 | 2023-07-28 | Incorrect security UI in Notifications in Google Chrome on Android... |
CVE-2022-4918 | 2023-07-28 | Use after free in UI in Google Chrome prior to... |