Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Line MEDIUM 5.4
CVE-2023-48129

An issue in kimono-oldnew mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-26
Line MEDIUM 5.4
CVE-2023-48132

An issue in kosei entertainment esportsstudioLegends mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of…

No fix yet
Fix from $1,600 2024-01-26
Line MEDIUM 5.4
CVE-2023-48135

An issue in mimasaka_farm mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-26
Line MEDIUM 5.4
CVE-2023-48130

An issue in GINZA CAFE mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-26
Line MEDIUM 5.4
CVE-2023-48131

An issue in CHIGASAKI BAKERY mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access toke…

No fix yet
Fix from $1,600 2024-01-26
Lemmy MEDIUM 6.5
CVE-2024-23649

Lemmy is a link aggregator and forum for the fediverse. Starting in version 0.17.0 and prior to version 0.19.1, users can report private messages, ev…

Fix: 0.19.1+
Fix from $1,600 2024-01-24
Profile Builder HIGH 7.5
CVE-2024-22141

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: fr…

Fix: after 3.10.0
Fix from $1,950 2024-01-24
Salesking HIGH 7.5
CVE-2024-22154

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SNP Digital SalesKing.This issue affects SalesKing: from n/a through 1.6.…

Fix: after 1.6.15
Fix from $1,950 2024-01-24
Country Blocker HIGH 7.5
CVE-2024-22294

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in IP2Location IP2Location Country Blocker.This issue affects IP2Location Co…

Fix: 2.33.4+
Fix from $1,950 2024-01-24
Albo Pretorio Online HIGH 7.5
CVE-2024-22301

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ignazio Scimone Albo Pretorio On line.This issue affects Albo Pretorio On…

Fix: after 4.6.6
Fix from $1,950 2024-01-24
Line MEDIUM 5.4
CVE-2023-43996

An issue in Q co ltd mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43997

An issue in Yoruichi hobby base mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access t…

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43998

An issue in Books-futaba mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43992

An issue in STOCKMAN GROUP mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43993

An issue in smaregi_app_market mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access to…

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43994

An issue in Cleaning_makotoya mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access tok…

No fix yet
Fix from $1,600 2024-01-24
Line MEDIUM 5.4
CVE-2023-43995

An issue in picot.golf mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2024-01-24
macOS MEDIUM 5.5
CVE-2024-23224

The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.3, macOS Ventura 13.6.4. An app may be able to access sensitive …

Fix: 13.6.4 / 14.3+
Fix from $1,600 2024-01-23
Safari MEDIUM 6.5
CVE-2024-23206

An access issue was addressed with improved access restrictions. This issue is fixed in Safari 17.3, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadO…

Fix: 10.3 / 14.3+
Fix from $1,600 2024-01-23
Ipados MEDIUM 5.5
CVE-2024-23207

This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.3, ma…

Fix: 10.3 / 12.7.3+
Fix from $1,600 2024-01-23
Ipados MEDIUM 5.5
CVE-2023-42888

The issue was addressed with improved checks. This issue is fixed in iOS 16.7.5 and iPadOS 16.7.5, watchOS 10.2, macOS Ventura 13.6.4, macOS Sonoma 1…

Fix: 10.2 / 12.7.3+
Fix from $1,600 2024-01-23
Cagefs HIGH 7.8
CVE-2020-36771

CloudLinux CageFS 7.1.1-1 or below passes the authentication token as a command line argument. In some configurations this allows local users to view…

Fix: 7.1.2-2+
Fix from $1,950 2024-01-22
Fedora MEDIUM 6.5
CVE-2024-22421

JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture. Users of JupyterL…

Fix: 3.6.7 / 4.0.11+
Fix from $1,600 2024-01-19
Vite HIGH 7.5
CVE-2024-23331

Vite is a frontend tooling framework for javascript. The Vite dev server option `server.fs.deny` can be bypassed on case-insensitive file systems usi…

Fix: 2.9.17 / 3.2.8+
Fix from $1,950 2024-01-19
Dir 825acg1 Firmware MEDIUM 5.3
CVE-2024-0717EPSS 18%

A vulnerability classified as critical was found in D-Link DAP-1360, DIR-300, DIR-615, DIR-615GF, DIR-615S, DIR-615T, DIR-620, DIR-620S, DIR-806A, DI…

Fix: after 2024-01-12
Fix from $1,600 2024-01-19
Smart S150 Firmware MEDIUM 5.3
CVE-2024-0716

A vulnerability classified as problematic has been found in Byzoro Smart S150 Management Platform V31R02B15. This affects an unknown part of the file…

No fix yet
Fix from $1,600 2024-01-19
Wp Social Login And Register Social Counter MEDIUM 6.5
CVE-2022-47160

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wpmet Wp Social Login and Register Social Counter.This issue affects Wp S…

Fix: 2.0.0+
Fix from $1,600 2024-01-19
Skoda Connect MEDIUM 5.3
CVE-2023-28901

The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing remote attackers to obtain recent trip data, vehicle mileage, fue…

Mitigation only
Fix from $1,600 2024-01-18
Skoda Connect MEDIUM 5.3
CVE-2023-28900

The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing to obtain nicknames and other user identifiers of Skoda Connect s…

Mitigation only
Fix from $1,600 2024-01-18
Qradar Security Information And Event Manager MEDIUM 5.3
CVE-2023-50950

IBM QRadar SIEM 7.5 could disclose sensitive email information in responses from offense rules. IBM X-Force ID: 275709.

Patch available
Fix from $1,600 2024-01-17