High
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2023-1507
|
|
CVE-2023-36039
|
Microsoft Exchange Server Spoofing (CVE-2023-36039)
|
Critical
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2023-1496
|
|
CVE-2023-20073
|
Cisco RV340 Arbitrary File Upload (CVE-2023-20073)
|
Critical
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2023-1491
|
|
CVE-2023-4708
|
Infosoftbd Clcknshop SQL Injection (CVE-2023-4708)
|
High
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2024-0028
|
|
CVE-2024-0517
|
Google Chrome Out of Bounds Write (CVE-2024-0517)
|
Critical
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2023-1508
|
|
CVE-2023-41727 CVE-2023-46216 CVE-2023-46217
|
Ivanti Avalanche Stack Buffer Overflow (CVE-2023-41727; CVE-2023-46216; CVE-2023-46217)
|
High
|
4 Feb 2024 |
4 Feb 2024 |
CPAI-2023-0501
|
|
CVE-2023-25652
|
Git Remote Code Execution (CVE-2023-25652)
|
Medium
|
1 Feb 2024 |
1 Feb 2024 |
CPAI-2021-2092
|
|
CVE-2021-21402
|
Jellyfin Directory Traversal (CVE-2021-21402)
|
Critical
|
1 Feb 2024 |
1 Feb 2024 |
CPAI-2023-1483
|
|
CVE-2023-46574
|
TOTOLINK A3700R Command Injection (CVE-2023-46574)
|
Medium
|
31 Jan 2024 |
31 Jan 2024 |
CPAI-2019-3141
|
|
CVE-2019-19985
|
WordPress Email Subscribers And Newsletters Plugin Information Disclosure (CVE-2019-19985)
|
Critical
|
30 Jan 2024 |
30 Jan 2024 |
CPAI-2023-1480
|
|
CVE-2023-46977
|
TOTOLINK LR1200GB Stack Overflow (CVE-2023-46977)
|
Critical
|
29 Jan 2024 |
29 Jan 2024 |
CPAI-2018-2576
|
|
CVE-2018-7836
|
Schneider Electric IIoT Monitor Unrestricted File Upload (CVE-2018-7836)
|
Medium
|
28 Jan 2024 |
28 Jan 2024 |
CPAI-2021-2091
|
|
CVE-2021-21973
|
VMware Multiple Products Server-Side Request Forgery (CVE-2021-21973)
|
High
|
24 Jan 2024 |
28 Jan 2024 |
CPAI-2023-1485
|
|
CVE-2023-24580
|
Django Denial of Service (CVE-2023-24580)
|
Medium
|
28 Jan 2024 |
28 Jan 2024 |
CPAI-2019-3138
|
|
CVE-2019-13396
|
FlightPath Directory Traversal (CVE-2019-13396)
|
Medium
|
25 Jan 2024 |
25 Jan 2024 |
CPAI-2023-1488
|
|
CVE-2023-0552
|
WordPress Pie Register Plugin Open Redirect (CVE-2023-0552)
|
High
|
25 Jan 2024 |
25 Jan 2024 |
CPAI-2023-1467
|
|
CVE-2023-25573
|
Metersphere Improper Access Control (CVE-2023-25573)
|
Medium
|
25 Jan 2024 |
25 Jan 2024 |
CPAI-2022-1995
|
|
CVE-2022-39960
|
Netic Group Export Authentication Bypass (CVE-2022-39960)
|
Critical
|
25 Jan 2024 |
25 Jan 2024 |
CPAI-2023-1457
|
|
CVE-2023-48022
|
Anyscale Ray Remote Code Execution (CVE-2023-48022)
|
Critical
|
16 Jan 2024 |
24 Jan 2024 |
CPAI-2023-1469
|
|
CVE-2023-6875
|
WordPress POST SMTP Mailer Plugin Authentication Bypass (CVE-2023-6875)
|
Critical
|
24 Jan 2024 |
24 Jan 2024 |
CPAI-2018-2651
|
|
CVE-2018-7251
|
Anchor CMS Information Disclosure (CVE-2018-7251)
|
Critical
|
24 Jan 2024 |
24 Jan 2024 |
CPAI-2023-1158
|
|
CVE-2023-4634
|
WordPress Media Library Assistant Plugin Remote Code Execution (CVE-2023-4634)
|
High
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2023-1479
|
|
CVE-2023-46455
|
GL.iNET GL-AR300M Directory Traversal (CVE-2023-46455)
|
Critical
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2023-1474
|
|
CVE-2023-5322 CVE-2023-6581
|
D-Link DAR-7000 SQL Injection (CVE-2023-5322; CVE-2023-6581)
|
Medium
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2018-2652
|
|
CVE-2018-7662
|
Couch CMS Information Disclosure (CVE-2018-7662)
|
Critical
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2022-2000
|
|
CVE-2022-36553
|
Hytec Inter Command Injection (CVE-2022-36553)
|
Critical
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2022-2004
|
|
CVE-2022-29383
|
NETGEAR ProSAFE SSL VPN SQL Injection (CVE-2022-29383)
|
High
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2022-2003
|
|
CVE-2022-2200
|
Mozilla Multiple Products Prototype Pollution (CVE-2022-2200)
|
Critical
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2022-2002
|
|
CVE-2022-32429
|
Mega System Technologies MSNSwitch Authentication Bypass (CVE-2022-32429)
|
Medium
|
22 Jan 2024 |
22 Jan 2024 |
CPAI-2019-3144
|
|
CVE-2019-17503
|
Kirona Dynamic Resource Scheduling Information Disclosure (CVE-2019-17503)
|
High
|
21 Jan 2024 |
21 Jan 2024 |
CPAI-2019-3142
|
|
CVE-2019-11248
|
Kubernetes Authentication Bypass (CVE-2019-11248)
|
Critical
|
21 Jan 2024 |
21 Jan 2024 |
CPAI-2020-4098
|
|
CVE-2020-2733
|
Oracle JD Edwards EnterpriseOne Tools Authentication Bypass (CVE-2020-2733)
|
High
|
21 Jan 2024 |
21 Jan 2024 |
CPAI-2022-1987
|
|
CVE-2022-36883
|
Jenkins Git Plugin Authentication Bypass (CVE-2022-36883)
|
Critical
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2023-1468
|
|
CVE-2022-22274 CVE-2023-0656
|
SonicWall SonicOS Buffer Overflow (CVE-2022-22274; CVE-2023-0656)
|
Critical
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2023-1464
|
|
CVE-2023-2982
|
WordPress Social Login and Register plugin Authentication Bypass (CVE-2023-2982)
|
High
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2023-1461
|
|
CVE-2023-26255
|
STAGIL Navigation Directory Traversal (CVE-2023-26255)
|
High
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2019-3143
|
|
CVE-2019-2578
|
Oracle WebCenter Authentication Bypass (CVE-2019-2578)
|
Medium
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2023-1466
|
|
CVE-2023-0563
|
PHPGurukul Bank Locker Management System Cross-Site Scripting (CVE-2023-0563)
|
Critical
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2019-3140
|
|
CVE-2019-18818
|
Strapi Authentication Bypass (CVE-2019-18818)
|
Critical
|
18 Jan 2024 |
18 Jan 2024 |
CPAI-2019-3136
|
|
CVE-2019-17444
|
JFrog Artifactory Hardcoded Credentials (CVE-2019-17444)
|
High
|
17 Jan 2024 |
17 Jan 2024 |
CPAI-2022-1991
|
|
CVE-2022-21500
|
Oracle Multiple Products Authentication Bypass (CVE-2022-21500)
|
Medium
|
16 Jan 2024 |
16 Jan 2024 |
CPAI-2019-3134
|
|
CVE-2019-1898
|
Cisco RV Routers Authentication Bypass (CVE-2019-1898)
|
Critical
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2023-1453
|
|
CVE-2023-27482
|
Home Assistant Multiple Products Authentication Bypass (CVE-2023-27482)
|
Critical
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2023-1452
|
|
CVE-2023-35813
|
Sitecore Remote Code Execution (CVE-2023-35813)
|
High
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2023-1450
|
|
CVE-2023-39677
|
Prestashop Module Information Disclosure (CVE-2023-39677)
|
Critical
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2023-1449
|
|
CVE-2023-3765
|
MLflow Directory Traversal (CVE-2023-3765)
|
High
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2022-1986
|
|
CVE-2022-47075
|
Smart Office Web Information Disclosure (CVE-2022-47075)
|
Medium
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2023-1439
|
|
CVE-2023-33405
|
Blogengine Open Redirect (CVE-2023-33405)
|
High
|
15 Jan 2024 |
15 Jan 2024 |
CPAI-2021-2076
|
|
CVE-2021-29505
|
XStream Insecure Deserialization (CVE-2021-29505)
|
Medium
|
14 Jan 2024 |
14 Jan 2024 |
CPAI-2022-1994
|
|
CVE-2022-40843
|
Tenda W15E Authentication Bypass (CVE-2022-40843)
|
Critical
|
14 Jan 2024 |
14 Jan 2024 |
CPAI-2022-1989
|
|
CVE-2022-4305
|
WordPress Login as User or Customer Plugin Privilege Escalation (CVE-2022-4305)
|