Vulnerabilities (CVE)

Filtered by NVD-CWE-noinfo
Total 36333 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-37205 1 Mozilla 1 Firefox 2026-06-17 N/A 6.5 MEDIUM
The use of RTL Arabic characters in the address bar may have allowed for URL spoofing. This vulnerability affects Firefox < 115.
CVE-2023-37204 1 Mozilla 1 Firefox 2026-06-17 N/A 6.5 MEDIUM
A website could have obscured the fullscreen notification by using an option element by introducing lag via an expensive computational function. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115.
CVE-2023-37203 1 Mozilla 1 Firefox 2026-06-17 N/A 7.8 HIGH
Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to trick end-users into creating a shortcut to local system files. This could have been leveraged to execute arbitrary code. This vulnerability affects Firefox < 115.
CVE-2023-37174 1 Gpac 1 Gpac 2026-06-17 N/A 5.5 MEDIUM
GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the dump_isom_scene function at /mp4box/filedump.c.
CVE-2023-37022 1 Open5gs 1 Open5gs 2026-06-17 N/A 7.5 HIGH
Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `UE Context Release Request` packet handler. A packet containing an invalid `MME_UE_S1AP_ID` field causes Open5gs to crash; an attacker may repeatedly send such packets to cause denial of service.
CVE-2023-37014 1 Open5gs 1 Open5gs 2026-06-17 N/A 7.5 HIGH
Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `UE Context Release Request` message missing a required `MME_UE_S1AP_ID` field to repeatedly crash the MME, resulting in denial of service.
CVE-2023-36984 1 Lavalite 1 Lavalite 2026-06-17 N/A 7.5 HIGH
LavaLite CMS v 9.0.0 is vulnerable to Sensitive Data Exposure.
CVE-2023-36983 1 Lavalite 1 Lavalite 2026-06-17 N/A 7.5 HIGH
LavaLite CMS v 9.0.0 is vulnerable to Sensitive Data Exposure.
CVE-2023-36980 1 Ethereum 1 Blockchain 2026-06-17 N/A 5.3 MEDIUM
An issue in Ethereum Blockchain v0.1.1+commit.6ff4cd6 cause the balance to be zeroed out when the value of betsize+casino.balance exceeds the threshold.
CVE-2023-36894 1 Microsoft 1 Sharepoint Server 2026-06-17 N/A 6.5 MEDIUM
Microsoft SharePoint Server Information Disclosure Vulnerability
CVE-2023-36892 1 Microsoft 1 Sharepoint Server 2026-06-17 N/A 8.0 HIGH
Microsoft SharePoint Server Spoofing Vulnerability
CVE-2023-36891 1 Microsoft 1 Sharepoint Server 2026-06-17 N/A 8.0 HIGH
Microsoft SharePoint Server Spoofing Vulnerability
CVE-2023-36890 1 Microsoft 1 Sharepoint Server 2026-06-17 N/A 6.5 MEDIUM
Microsoft SharePoint Server Information Disclosure Vulnerability
CVE-2023-36888 1 Microsoft 1 Edge Chromium 2026-06-17 N/A 6.3 MEDIUM
Microsoft Edge for Android (Chromium-based) Tampering Vulnerability
CVE-2023-36883 1 Microsoft 1 Edge 2026-06-17 N/A 4.3 MEDIUM
Microsoft Edge for iOS Spoofing Vulnerability
CVE-2023-36880 1 Microsoft 1 Edge Chromium 2026-06-17 N/A 4.8 MEDIUM
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
CVE-2023-36878 1 Microsoft 1 Edge Chromium 2026-06-17 N/A 4.3 MEDIUM
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2023-36876 1 Microsoft 1 Windows Server 2008 2026-06-17 N/A 7.1 HIGH
Reliability Analysis Metrics Calculation (RacTask) Elevation of Privilege Vulnerability
CVE-2023-36874 1 Microsoft 12 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 9 more 2026-06-17 N/A 7.8 HIGH
Windows Error Reporting Service Elevation of Privilege Vulnerability
CVE-2023-36872 1 Microsoft 1 Vp9 Video Extensions 2026-06-17 N/A 5.5 MEDIUM
VP9 Video Extensions Information Disclosure Vulnerability