Show filters
285,609 Total Results
Displaying 11-20 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2023-49082

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper validation makes it possible for an attacker to modify the HTTP request (e.g. insert a new header) or even create a new HTTP request if the attacker controls the HTTP method. The vulnerability occurs only if the attacker can control the HTTP method (GET, POST etc.) of the request. If the attacker can control the HTTP version of the request it will be able to modify the request (request smuggling). This issue has been patched in version 3.9.0.
0
Attacker Value
Unknown

CVE-2023-48952

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_deserialize_reusing function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48951

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_equal function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48950

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_col_len function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48949

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_add function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48948

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_div function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48947

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the cha_cmp function of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48946

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
An issue in the box_mpy function of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.
0
Attacker Value
Unknown

CVE-2023-48945

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
A stack overflow in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
0
Attacker Value
Unknown

CVE-2023-44383

Disclosure Date: November 29, 2023 (last updated November 30, 2023)
October is a Content Management System (CMS) and web platform to assist with development workflow. A user with access to the media manager that stores SVG files could create a stored XSS attack against themselves and any other user with access to the media manager when SVG files are supported. This issue has been patched in version 3.5.2.
0