Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

15,095 CVEs · Low severity

CVEs (15,095, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 76–100 of 15,095 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2023-48231 LOW Patched 3.9 2023-11-16 Vim is an open source command line text editor. When closing a window, vim may try to access already freed window structure. Exploitation beyond crashing the application ha…
CVE-2023-48232 LOW Patched 3.9 2023-11-16 Vim is an open source command line text editor. A floating point exception may occur when calculating the line offset for overlong lines and smooth scrolling is enabled and…
CVE-2023-38411 LOW Patched 3.9 2023-11-14 Improper access control in the Intel Smart Campus android application before version 9.4 may allow an authenticated user to potentially enable escalation of privilege via l…
CVE-2023-46126 LOW Patched 3.9 2023-10-25 Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime environments, helping enforce privacy regulations in c…
CVE-2023-46122 LOW Patched 3.9 2023-10-23 sbt is a build tool for Scala, Java, and others. Given a specially crafted zip or JAR file, `IO.unzip` allows writing of arbitrary file. This would have potential to overwr…
CVE-2023-45143 LOW Patched 3.9 2023-10-12 Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authorization headers on cross-origin redirects, but did not …
CVE-2023-36555 LOW Patched 3.9 2023-10-10 An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet FortiOS 7.2.0 - 7.2.4 allows an attacker to execute unauthorized code or comman…
CVE-2023-4753 LOW Patched 3.9 2023-09-21 OpenHarmony v3.2.1 and prior version has a system call function usage error. Local attackers can crash kernel by the error input.
CVE-2023-5084 LOW Patched 3.9 2023-09-20 Cross-site Scripting (XSS) - Reflected in GitHub repository hestiacp/hestiacp prior to 1.8.8.
CVE-2023-40732 LOW Patched 3.9 2023-09-12 A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application does not invalidate the session token on lo&hellip;
CVE-2023-41329 LOW Patched 3.9 2023-09-06 WireMock is a tool for mocking HTTP services. The proxy mode of WireMock, can be protected by the network restrictions configuration, as documented in Preventing proxying t&hellip;
CVE-2023-0654 LOW Patched 3.9 2023-08-29 Due to a misconfiguration, the WARP Mobile Client (< 6.29) for Android was susceptible to a tapjacking attack. In the event that an attacker built a malicious application a&hellip;
CVE-2023-0238 LOW Patched 3.9 2023-08-29 Due to lack of a security policy, the WARP Mobile Client (<=6.29) for Android was susceptible to this vulnerability which allowed a malicious app installed on a victim's de&hellip;
CVE-2023-3800 LOW 3.9 2023-07-20 A vulnerability was found in EasyAdmin8 2.0.2.2. It has been classified as problematic. Affected is an unknown function of the file /admin/index/index.html#/admin/mall.good&hellip;
CVE-2023-3363 LOW Patched 3.9 2023-07-13 An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16.0 prior to 16.0.6, all versions from 16.1 prior to &hellip;
CVE-2023-20867 LOW Patched 3.9 2023-06-13 A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
CVE-2023-28829 LOW Patched 3.9 2023-06-13 A vulnerability has been identified in SIMATIC NET PC Software V14 (All versions), SIMATIC NET PC Software V15 (All versions), SIMATIC PCS 7 V8.2 (All versions), SIMATIC PC&hellip;
CVE-2023-30571 LOW Patched 3.9 2023-05-29 Libarchive through 3.6.2 can cause directories to have world-writable permissions. The umask() call inside archive_write_disk_posix.c changes the umask of the whole process&hellip;
CVE-2023-23910 LOW Patched 3.9 2023-05-10 Out-of-bounds write for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially escala&hellip;
CVE-2021-46762 LOW 3.9 2023-05-09 Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of integrity or denial of service.
CVE-2023-30624 LOW Patched 3.9 2023-04-27 Wasmtime is a standalone runtime for WebAssembly. Prior to versions 6.0.2, 7.0.1, and 8.0.1, Wasmtime's implementation of managing per-instance state, such as tables and me&hellip;
CVE-2023-30544 LOW Patched 3.9 2023-04-24 Kiwi TCMS is an open source test management system. In versions of Kiwi TCMS prior to 12.2, users were able to update their email addresses via the `My profile` admin page.&hellip;
CVE-2022-1230 LOW Patched 3.9 2023-03-28 This vulnerability allows local attackers to execute arbitrary code on affected installations of Samsung Galaxy S21 prior to 4.5.40.5 phones. An attacker must first obtain &hellip;
CVE-2023-22591 LOW Patched 3.9 2023-03-15 IBM Robotic Process Automation 21.0.1 through 21.0.7 and 23.0.0 through 23.0.1 could allow a user with physical access to the system due to session tokens for not being inv&hellip;
CVE-2023-23939 LOW Patched 3.9 2023-03-06 Azure/setup-kubectl is a GitHub Action for installing Kubectl. This vulnerability only impacts versions before version 3. An insecure temporary creation of a file allows ot&hellip;