|
181
|
8.8
-
|
HIGH
Network
|
Heap buffer overflow in PDF in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via a…
|
CWE-787
Out-of-bounds Write
|
CVE-2023-5474
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2024-11-21 17:41
2023-10-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
182
|
6.3
-
|
MEDIUM
Network
|
Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chro…
|
CWE-416
Use After Free
|
CVE-2023-5473
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2024-11-21 17:41
2023-10-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
183
|
8.8
-
|
HIGH
Network
|
Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critica…
|
CWE-416
Use After Free
|
CVE-2023-5218
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2024-11-21 17:41
2023-10-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
184
|
9.1
-
|
CRITICAL
Network
|
Authorization Bypass Through User-Controlled Key vulnerability in Apache ZooKeeper. If SASL Quorum Peer authentication is enabled in ZooKeeper (quorum.auth.enableSasl=true), the authorization is done…
|
-
|
CVE-2023-44981
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 17:26
2023-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
185
|
5.3
-
|
MEDIUM
Network
|
Improper Input Validation vulnerability in Apache Tomcat.Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0.81 and from 8.5.0 through 8.5.93 did not c…
|
-
|
CVE-2023-45648
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 17:27
2023-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
186
|
5.3
-
|
MEDIUM
Network
|
Incomplete Cleanup vulnerability in Apache Tomcat.When recycling various internal objects in Apache Tomcat from 11.0.0-M1 through 11.0.0-M11, from 10.1.0-M1 through 10.1.13, from 9.0.0-M1 through 9.0…
|
-
|
CVE-2023-42795
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 17:23
2023-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
187
|
7.5
-
|
HIGH
Network
|
Eclipse Jetty provides a web server and servlet container. In versions 11.0.0 through 11.0.15, 10.0.0 through 10.0.15, and 9.0.0 through 9.4.52, an integer overflow in `MetaDataBuilder.checkSize` all…
|
-
|
CVE-2023-36478
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 17:09
2023-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
188
|
7.5
-
|
HIGH
Network
|
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
|
NVD-CWE-noinfo
|
CVE-2023-44487
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2025-03-8 04:15
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
189
|
8.8
-
|
HIGH
Network
|
libcue provides an API for parsing and extracting data from CUE sheets. Versions 2.2.1 and prior are vulnerable to out-of-bounds array access. A user of the GNOME desktop environment can be exploited…
|
-
|
CVE-2023-43641
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:* cpe:2.3:o:debian:debian_linux:10.0:*
|
|
|
|
|
2024-11-21 17:24
2023-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190
|
7.5
-
|
HIGH
Network
|
An issue was discovered in ApiPageSet.php in MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. It allows attackers to cause a denial of service (unbounded loop …
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2023-45363
|
cpe:2.3:o:debian:debian_linux:12.0:* cpe:2.3:o:debian:debian_linux:11.0:*
|
|
|
|
|
2024-11-21 17:26
2023-10-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|