CVE-2023-40826

An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the zippluginPath parameter.Read More ...

Continue Reading
CVE-2023-39650

Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /tvcmsblog/single.Read More ...

Continue Reading
CVE-2023-39578

A stored cross-site scripting (XSS) vulnerability in the Create function of Zenario CMS v9.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Menu navi ...

Continue Reading
CVE-2023-39348

Spinnaker is an open source, multi-cloud continuous delivery platform. Log output when updating GitHub status is improperly set to FULL always. It's recommended to apply the patch and rotate the GitH ...

Continue Reading
CVE-2023-41109

SmartNode SN200 (aka SN200) 3.21.2-23021 allows unauthenticated OS Command Injection.Read More ...

Continue Reading
CVE-2023-35785

Zoho ManageEngine ADManager Plus through 7186 is vulnerable to 2FA bypass.Read More ...

Continue Reading
CVE-2023-39968

jupyter-server is the backend for Jupyter web applications. Open Redirect Vulnerability. Maliciously crafted login links to known Jupyter Servers can cause successful login or an already logged-in ses ...

Continue Reading
CVE-2020-24165

An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial of service (DoS).Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: