Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2023-33968
Kanboard is open source project management software that focuses on the Kanban methodology. Versions prior to 1.2.30 are subject to a missing access …
Kanboard
1.2.30+
MEDIUM 6.5
CVE-2023-33970
Kanboard is open source project management software that focuses on the Kanban methodology. A vulnerability related to a `missing access control` was…
Kanboard
1.2.30+
MEDIUM 5.3
CVE-2023-2299
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medication of data via the /wp-jso…
Online Booking \& Scheduling Calendar
after 4.2.10
MEDIUM 5.4
CVE-2023-2415
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of data due to a miss…
Online Booking \& Scheduling Calendar
after 4.2.10
HIGH 8.8
CVE-2023-28657
Improper access control vulnerability exists in CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user of the PC where the affected product is in…
Conprosys Hmi System
3.5.3+
HIGH 8.8
CVE-2023-2545
The Feather Login Page plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'getListOfUsers' fu…
Feather Login Page
after 1.1.1
MEDIUM 5.4
CVE-2023-2547
The Feather Login Page plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'deleteUser' function…
Feather Login Page
after 1.1.1
MEDIUM 5.4
CVE-2023-2945
Missing Authorization in GitHub repository openemr/openemr prior to 7.0.1.
Openemr
7.0.1+
MEDIUM 5.0
CVE-2022-39335
Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. The Matrix Federation API allows remote homeservers …
Synapse
1.69.0+
HIGH 7.8
CVE-2023-2480
Missing access permissions checks in M-Files Client before 23.5.12598.0 (excluding 23.2 SR2 and newer) allows elevation of privilege via UI extension…
M Files
23.5.12598.0+
HIGH 7.4
CVE-2023-33983
The Introduction Client in Briar through 1.5.3 does not implement out-of-band verification for the public keys of introducees. An introducer can laun…
Briar
after 1.5.3
HIGH 7.5
CVE-2023-33948
The Dynamic Data Mapping module in Liferay Portal 7.4.3.67, and Liferay DXP 7.4 update 67 does not limit Document and Media files which can be downlo…
Digital Experience Platform
Mitigation only
HIGH 8.8
CVE-2023-2494
The Go Pricing - WordPress Responsive Pricing Tables plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil…
Go Pricing
after 3.3.19
HIGH 7.8
CVE-2023-31826
Skyscreamer Open Source Nevado JMS v1.3.2 does not perform security checks when receiving messages. This allows attackers to execute arbitrary comman…
Nevado Jms
No fix yet
HIGH 7.5
CVE-2023-33252
iden3 snarkjs through 0.6.11 allows double spending because there is no validation that the publicSignals length is less than the field modulus.
Snarkjs
after 0.6.11
MEDIUM 5.4
CVE-2023-2716
The Groundhogg plugin for WordPress is vulnerable to unauthorized access of data and modification of data due to a missing capability check on the 'a…
Groundhogg
after 2.7.9.8
MEDIUM 5.4
CVE-2023-2757
The Waiting: One-click countdowns plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on 'saveLang' function…
Waiting
after 0.6.2
MEDIUM 5.5
CVE-2023-32112
Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, SAP_APPL 606, SAP_APPL 616, SA…
S4core
Mitigation only
HIGH 7.8
CVE-2022-48368
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
Android
Mitigation only
HIGH 7.8
CVE-2022-48369
In audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48370
In dialer service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privile…
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48371
In dialer service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privile…
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48375
In contacts service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48376
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48377
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48378
In engineermode service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privil…
Android
Mitigation only
MEDIUM 5.5
CVE-2022-48379
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
Android
Mitigation only
HIGH 7.8
CVE-2022-48383
.In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privile…
Android
Mitigation only
HIGH 7.8
CVE-2022-48384
In srtd service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileg…
Android
Mitigation only
HIGH 7.8
CVE-2022-48388
In powerEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privi…
Android
No fix yet