CVE-2023-48208 |
Description: A Cross Site Scripting vulnerability in Availability Booking Calendar 5.0 allows an attacker to inject JavaScript via the name, plugin_sms_api_key, plugin_sms_country_code, uuid, title, or country name parameter to index.php.
CVSS: MEDIUM (6.1) EPSS Score: 0.08%
November 27th, 2024 (5 months ago)
|
CVE-2023-48198 |
|
CVE-2023-48176 |
|
CVE-2023-48105 |
Description: An heap overflow vulnerability was discovered in Bytecode alliance wasm-micro-runtime v.1.2.3 allows a remote attacker to cause a denial of service via the wasm_loader_prepare_bytecode function in core/iwasm/interpreter/wasm_loader.c.
CVSS: HIGH (7.5) EPSS Score: 0.1%
November 27th, 2024 (5 months ago)
|
CVE-2023-47573 |
|
CVE-2023-47453 |
|
CVE-2023-47364 |
|
CVE-2023-47350 |
|
CVE-2023-47327 |
Description: The "Create a Space" feature in Silverpeas Core 6.3.1 is reserved for use by administrators. This function suffers from broken access control, allowing any authenticated user to create a space by navigating to the correct URL.
CVSS: LOW (0.0) EPSS Score: 0.05%
November 27th, 2024 (5 months ago)
|
CVE-2023-47321 |
|