CVE-2023-30223

A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to send crafted TCP packets containing requests to perform arbitrary actions.Read More ...

Continue Reading
CVE-2023-34733

A lack of exception handling in the Volkswagen Discover Media Infotainment System Software Version 0876 allows attackers to cause a Denial of Service (DoS) via supplying crafted media files when conne ...

Continue Reading
CVE-2023-24243

CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF).Read More ...

Continue Reading
CVE-2023-35782

The ipandlanguageredirect extension before 5.1.2 for TYPO3 allows SQL Injection.Read More ...

Continue Reading
CVE-2023-35783

The ke_search (aka Faceted Search) extension before 4.0.3, 4.1.x through 4.6.x before 4.6.6, and 5.x before 5.0.2 for TYPO3 allows XSS via indexed data.Read More ...

Continue Reading
CVE-2023-34548

Simple Customer Relationship Management 1.0 is vulnerable to SQL Injection via the email parameter.Read More ...

Continue Reading
CVE-2023-3294

Cross-site Scripting (XSS) - DOM in GitHub repository saleor/react-storefront prior to c29aab226f07ca980cc19787dcef101e11b83ef7.Read More ...

Continue Reading
CVE-2023-26537

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in nicolly WP No External Links plugin Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: