Total
36333 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2023-31927 | 1 Broadcom | 1 Brocade Fabric Operating System | 2026-06-17 | N/A | 5.3 MEDIUM |
| An information disclosure in the web interface of Brocade Fabric OS versions before Brocade Fabric OS v9.2.0 and v9.1.1c, could allow a remote unauthenticated attacker to get technical details about the web interface. | |||||
| CVE-2023-31914 | 1 Jerryscript | 1 Jerryscript | 2026-06-17 | N/A | 5.5 MEDIUM |
| Jerryscript 3.0 (commit 05dbbd1) was discovered to contain out-of-memory issue in malloc. | |||||
| CVE-2023-31902 | 1 Mobilemouse | 1 Mobile Mouse | 2026-06-17 | N/A | 9.8 CRITICAL |
| RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE). | |||||
| CVE-2023-31873 | 1 Gin Project | 1 Gin | 2026-06-17 | N/A | 7.8 HIGH |
| Gin 0.7.4 allows execution of arbitrary code when a crafted file is opened, e.g., via require('child_process'). | |||||
| CVE-2023-31871 | 1 Opentext | 1 Documentum Content Server | 2026-06-17 | N/A | 7.8 HIGH |
| OpenText Documentum Content Server before 23.2 has a flaw that allows for privilege escalation from a non-privileged Documentum user to root. The software comes prepackaged with a root owned SUID binary dm_secure_writer. The binary has security controls in place preventing creation of a file in a non-owned directory, or as the root user. However, these controls can be carefully bypassed to allow for an arbitrary file write as root. | |||||
| CVE-2023-31847 | 1 Davinci Project | 1 Davinci | 2026-06-17 | N/A | 6.5 MEDIUM |
| In davinci 0.3.0-rc after logging in, the user can connect to the mysql malicious server by controlling the data source to read arbitrary files on the client side. | |||||
| CVE-2023-31728 | 1 Teltonika-networks | 2 Rut240, Rut240 Firmware | 2026-06-17 | N/A | 7.0 HIGH |
| Teltonika RUT240 devices with firmware before 07.04.2, when bridge mode is used, sometimes make SSH and HTTP services available on the IPv6 WAN interface even though the UI shows that they are only available on the LAN interface. | |||||
| CVE-2023-31724 | 1 Yasm Project | 1 Yasm | 2026-06-17 | N/A | 7.8 HIGH |
| yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function do_directive at /nasm/nasm-pp.c. | |||||
| CVE-2023-31723 | 1 Yasm Project | 1 Yasm | 2026-06-17 | N/A | 5.5 MEDIUM |
| yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nasm-pp.c. | |||||
| CVE-2023-31679 | 1 Videogo Project | 1 Videogo | 2026-06-17 | N/A | 7.5 HIGH |
| Incorrect access control in Videogo v6.8.1 allows attackers to access images from other devices via modification of the Device Id parameter. | |||||
| CVE-2023-31678 | 1 Videogo Project | 1 Videogo | 2026-06-17 | N/A | 5.3 MEDIUM |
| Incorrect access control in Videogo v6.8.1 allows attackers to bind shared devices after the connection has been ended. | |||||
| CVE-2023-31677 | 1 Luowice | 1 Luowice | 2026-06-17 | N/A | 7.5 HIGH |
| Insecure permissions in luowice 3.5.18 allow attackers to view information for other alarm devices via modification of the eseeid parameter. | |||||
| CVE-2023-31670 | 1 Webassembly | 1 Webassembly Binary Toolkit | 2026-06-17 | N/A | 7.5 HIGH |
| An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (DoS) via running a crafted binary. | |||||
| CVE-2023-31655 | 1 Redis | 1 Redis | 2026-06-17 | N/A | 7.5 HIGH |
| redis v7.0.10 was discovered to contain a segmentation violation. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors. | |||||
| CVE-2023-31654 | 1 Redis | 1 Redisraft | 2026-06-17 | N/A | 9.8 CRITICAL |
| Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR violation via the component hiredisAllocFns at /opt/fs/redisraft/deps/hiredis/alloc.c. | |||||
| CVE-2023-31587 | 1 Tenda | 2 Ac5, Ac5 Firmware | 2026-06-17 | N/A | 9.8 CRITICAL |
| Tenda AC5 router V15.03.06.28 was discovered to contain a remote code execution (RCE) vulnerability via the Mac parameter at ip/goform/WriteFacMac. | |||||
| CVE-2023-31572 | 1 Bludit | 1 Bludit | 2026-06-17 | N/A | 8.8 HIGH |
| An issue in Bludit 4.0.0-rc-2 allows authenticated attackers to change the Administrator password and escalate privileges via a crafted request. | |||||
| CVE-2023-31555 | 1 Podofo Project | 1 Podofo | 2026-06-17 | N/A | 6.5 MEDIUM |
| podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad. | |||||
| CVE-2023-31490 | 3 Debian, Fedoraproject, Frrouting | 3 Debian Linux, Fedora, Frrouting | 2026-06-17 | N/A | 7.5 HIGH |
| An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub() function. | |||||
| CVE-2023-31489 | 2 Fedoraproject, Frrouting | 2 Fedora, Frrouting | 2026-06-17 | N/A | 5.5 MEDIUM |
| An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function. | |||||
