CVE Severity Distribution (Last 30 Days)
Found 11 CVEs in the last 30 days.
CVE-2023-4762
HIGH
CVSS: 8.8
EPSS: 41.1%
VulnCheck KEV
PoC Available
CWE-843
CWE-843
Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Published: 2023-09-05
CVE-2023-47621
HIGH
CVSS: 8.8
EPSS: 1.0%
CWE-434
CWE-434
T1105
Guest Entries is a php library which allows users to create, update & delete entries from the front-end of a site. In affected versions the file uploads feature did not prevent the upload of PHP files. This may lead to code execution on the server by authenticated users. This vulnerability is fixed in v3.1.2. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Published: 2023-11-13
CVE-2023-47622
HIGH
CVSS: 8.8
EPSS: 0.4%
CWE-79
CWE-79
T1189
iTop is an IT service management platform. When dashlet are refreshed, XSS attacks are possible. This vulnerability is fixed in 3.0.4 and 3.1.1.
Published: 2024-04-15
CVE-2023-47626
HIGH
CVSS: 8.8
EPSS: 0.4%
CWE-79
CWE-79
T1189
iTop is an IT service management platform. When displaying/editing the user's personal tokens, XSS attacks are possible. This vulnerability is fixed in 3.1.1.
Published: 2024-04-15
CVE-2023-47624
HIGH
CVSS: 7.5
EPSS: 0.8%
CWE-22
T1083
Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, any user (regardless of their permissions) may be able to read files from the local file system due to a path traversal in the `/hls` endpoint. This issue may lead to Information Disclosure. As of time of publication, no patches are available.
Published: 2023-12-13
CVE-2023-47629
HIGH
CVSS: 7.1
EPSS: 0.5%
CWE-269
T1068
DataHub is an open-source metadata platform. In affected versions sign-up through an invite link does not properly restrict users from signing up as privileged accounts. If a user is given an email sign-up link they can potentially create an admin account given certain preconditions. If the default datahub user has been removed, then the user can sign up for an account that leverages the default policies giving admin privileges to the datahub user. All DataHub instances prior to the patch that have removed the datahub user, but not the default policies applying to that user are affected. Users are advised to update to version 0.12.1 which addresses the issue. There are no known workarounds for this vulnerability.
Published: 2023-11-14
CVE-2023-47620
MEDIUM
CVSS: 6.1
EPSS: 0.5%
CWE-79
CWE-79
T1189
Scrypted is a home video integration and automation platform. In versions 0.55.0 and prior, a reflected cross-site scripting vulnerability exists in the plugin-http.ts file via the `owner' and 'pkg` parameters. An attacker can run arbitrary JavaScript code.
Published: 2023-12-13
CVE-2023-47623
MEDIUM
CVSS: 6.1
EPSS: 0.4%
CWE-79
T1189
Scrypted is a home video integration and automation platform. In versions 0.55.0 and prior, a reflected cross-site scripting vulnerability exists in the login page via the `redirect_uri` parameter. By specifying a url with the javascript scheme (`javascript:`), an attacker can run arbitrary JavaScript code after the login.
Published: 2023-12-13
CVE-2023-47627
MEDIUM
CVSS: 5.3
EPSS: 0.9%
CWE-444
aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. The HTTP parser in AIOHTTP has numerous problems with header parsing, which could lead to request smuggling. This parser is only used when AIOHTTP_NO_EXTENSIONS is enabled (or not using a prebuilt wheel). These bugs have been addressed in commit `d5c12ba89` which has been included in release version 3.8.6. Users are advised to upgrade. There are no known workarounds for these issues.
Published: 2023-11-14
CVE-2023-47628
MEDIUM
CVSS: 4.2
EPSS: 0.4%
CWE-613
DataHub is an open-source metadata platform. DataHub Frontend's sessions are configured using Play Framework's default settings for stateless session which do not set an expiration time for a cookie. Due to this, if a session cookie were ever leaked, it would be valid forever. DataHub uses a stateless session cookie that is not invalidated on logout, it is just removed from the browser forcing the user to login again. However, if an attacker extracted a cookie from an authenticated user it would continue to be valid as there is no validation on a time window the session token is valid for due to a combination of the usage of LegacyCookiesModule from Play Framework and using default settings which do not set an expiration time. All DataHub instances prior to the patch that have removed the datahub user, but not the default policies applying to that user are affected. Users are advised to update to version 0.12.1 which addresses the issue. There are no known workarounds for this vulnerability.
Published: 2023-11-14
CVE-2023-47625
LOW
CVSS: 2.9
EPSS: 0.5%
CWE-120
T1203
PX4 autopilot is a flight control solution for drones. In affected versions a global buffer overflow vulnerability exists in the CrsfParser_TryParseCrsfPacket function in /src/drivers/rc/crsf_rc/CrsfParser.cpp:298 due to the invalid size check. A malicious user may create an RC packet remotely and that packet goes into the device where the _rcs_buf reads. The global buffer overflow vulnerability will be triggered and the drone can behave unexpectedly. This issue has been addressed in version 1.14.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.
Published: 2023-11-13