Show filters
71,468 Total Results
Displaying 701-710 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2023-47075

Disclosure Date: December 13, 2023 (last updated December 15, 2023)
Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Attacker Value
Unknown

CVE-2023-22524

Disclosure Date: December 06, 2023 (last updated December 12, 2023)
Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could utilize WebSockets to bypass Atlassian Companion’s blocklist and MacOS Gatekeeper to allow execution of code.
Attacker Value
Unknown

CVE-2023-42916

Disclosure Date: November 30, 2023 (last updated June 27, 2024)
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Attacker Value
Unknown

CVE-2023-6345

Disclosure Date: November 29, 2023 (last updated December 16, 2023)
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2023-48796

Disclosure Date: November 24, 2023 (last updated December 02, 2023)
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler. The information exposed to unauthorized actors may include sensitive data such as database credentials. Users who can't upgrade to the fixed version can also set environment variable `MANAGEMENT_ENDPOINTS_WEB_EXPOSURE_INCLUDE=health,metrics,prometheus` to workaround this, or add the following section in the `application.yaml` file ``` management:   endpoints:     web:       exposure:         include: health,metrics,prometheus ``` This issue affects Apache DolphinScheduler: from 3.0.0 before 3.0.2. Users are recommended to upgrade to version 3.0.2, which fixes the issue.
Attacker Value
Unknown

CVE-2023-44350

Disclosure Date: November 17, 2023 (last updated January 04, 2025)
Adobe ColdFusion versions 2023.5 (and earlier) and 2021.11 (and earlier) are affected by an Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2023-6018

Disclosure Date: November 16, 2023 (last updated November 30, 2023)
An attacker can overwrite any file on the server hosting MLflow without any authentication.
Attacker Value
Unknown

CVE-2023-36402

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-36397

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-36028

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability