NA - CVE-2023-45145 - Redis is an in-memory database that persists on...
Redis is an in-memory database that persists on disk. On startup, Redis begins listening on a Unix socket before adjusting its permissions to the user-provided configuration. If a permissive...
NA - CVE-2023-45813 - Torbot is an open source tor network...
Torbot is an open source tor network intelligence tool. In affected versions the `torbot.modules.validators.validate_link function` uses the python-validators URL validation regex. This particular...
NA - CVE-2023-43800 - Arduino Create Agent is a package to help...
Arduino Create Agent is a package to help manage Arduino development. The vulnerability affects the endpoint `/v2/pkgs/tools/installed`. A user who has the ability to perform HTTP requests to the...
NA - CVE-2023-43801 - Arduino Create Agent is a package to help...
Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/tools/installed` and the way it handles plugin names supplied as user input....
NA - CVE-2023-45146 - XXL-RPC is a high performance, distributed RPC...
XXL-RPC is a high performance, distributed RPC framework. With it, a TCP server can be set up using the Netty framework and the Hessian serialization mechanism. When such a configuration is used,...
NA - CVE-2023-45812 - The Apollo Router is a configurable,...
The Apollo Router is a configurable, high-performance graph router written in Rust to run a federated supergraph that uses Apollo Federation. Affected versions are subject to a Denial-of-Service...
NA - CVE-2023-45814 - Bunkum is an open-source protocol-agnostic...
Bunkum is an open-source protocol-agnostic request server for custom game servers. First, a little bit of background. So, in the beginning, Bunkum's `AuthenticationService` only supported...
NA - CVE-2023-45958 - Thirty Bees Core v1.4.0 was discovered to...
Thirty Bees Core v1.4.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the backup_pagination parameter at /controller/AdminController.php. This vulnerability...
NA - CVE-2023-37502 - HCL Compass is vulnerable to lack of file...
HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that can be executed by the server or by a user's web browser.