| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-47142 | IBM Tivoli Application Dependency Discovery Manager privilege escalation | IBM | Tivoli Application Dependency Discovery Manager | High | 7.5 | 2024-02-02 13:22:17 | Deep Dive |
| CVE-2023-47144 | IBM Tivoli Application Dependency Discovery Manager cross-site scripting | IBM | Tivoli Application Dependency Discovery Manager | Medium | 6.1 | 2024-02-02 13:04:57 | Deep Dive |
| CVE-2023-47143 | IBM Tivoli Application Dependency Discovery Manager HOST header injection | IBM | Tivoli Application Dependency Discovery Manager | Critical | 10.0 | 2024-02-02 13:03:31 | Deep Dive |
| CVE-2023-51695 | WordPress Everest Forms Plugin <= 2.0.4.1 is vulnerable to Cross Site Scripting (XSS) | WPEverest | Everest Forms – Build Contact Forms, Surveys, Polls, Application Forms, and more with Ease! | Medium | 5.9 | 2024-02-01 11:07:21 | Deep Dive |
| CVE-2023-6291 | Keycloak: redirect_uri validation bypass | Red Hat | Red Hat build of Keycloak 22 | High | 7.1 | 2024-01-26 14:23:43 | Deep Dive |
| CVE-2024-23453 | Spoon 安全漏洞 | Spoon Radio Japan Inc. | Android Spoon application | 中危 | - | 2024-01-23 23:12:43 | Deep Dive |
| CVE-2023-6450 | Lenovo App Store 资源管理错误漏洞 | Lenovo | Lenovo App Store Application | Medium | 5.5 | 2024-01-19 20:10:00 | Deep Dive |
| CVE-2024-20277 | Cisco ThousandEyes Enterprise Agent 安全漏洞 | Cisco | Cisco ThousandEyes Recorder Application | Medium | 6.8 | 2024-01-17 16:58:21 | Deep Dive |
| CVE-2024-21738 | Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver ABAP Application Server and ABAP Platform | SAP_SE | SAP NetWeaver ABAP Application Server and ABAP Platform | Medium | 4.1 | 2024-01-09 01:19:29 | Deep Dive |
| CVE-2024-21737 | Code Injection vulnerability in SAP Application Interface Framework (File Adapter) | SAP_SE | SAP Application Interface Framework (File Adapter) | High | 8.4 | 2024-01-09 01:18:19 | Deep Dive |
| CVE-2023-5879 | Aladdin Connect Android Application Insecure Storage | The Genie Company | Aladdin Connect Mobile Application | - | - | 2024-01-03 19:15:59 | Deep Dive |
| CVE-2023-7161 | Netentsec NS-ASG Application Security Gateway Login sql injection | Netentsec | NS-ASG Application Security Gateway | High | 7.3 | 2023-12-29 08:00:06 | Deep Dive |
| CVE-2023-3171 | Eap-7: heap exhaustion via deserialization | Red Hat | EAP 7.4.13 | High | 7.5 | 2023-12-27 15:45:33 | Deep Dive |
| CVE-2023-7094 | Netentsec NS-ASG Application Security Gateway nsasg6.0.tgz information disclosure | Netentsec | NS-ASG Application Security Gateway | Medium | 5.3 | 2023-12-25 00:00:07 | Deep Dive |
| CVE-2023-50829 | WordPress Loan Repayment Calculator and Application Form Plugin <= 2.9.3 is vulnerable to Cross Site Scripting (XSS) | Aerin | Loan Repayment Calculator and Application Form | Medium | 5.9 | 2023-12-21 17:10:51 | Deep Dive |
| CVE-2023-3629 | Infinispan: non-admins should not be able to get cache config via rest api | Red Hat | Red Hat Data Grid 8.4.4 | Medium | 4.3 | 2023-12-18 13:43:08 | Deep Dive |
| CVE-2023-5236 | Infinispan: circular reference on marshalling leads to dos | Red Hat | Red Hat Data Grid 8.4.4 | Medium | 4.4 | 2023-12-18 13:43:08 | Deep Dive |
| CVE-2023-3628 | Infispan: rest bulk ops don't check permissions | Red Hat | Red Hat Data Grid 8.4.4 | Medium | 6.5 | 2023-12-18 13:43:08 | Deep Dive |
| CVE-2023-6903 | Netentsec NS-ASG Application Security Gateway sql injection | Netentsec | NS-ASG Application Security Gateway | High | 7.3 | 2023-12-17 23:00:05 | Deep Dive |
| CVE-2023-6837 | Incorrect Authorization in Multiple WSO2 Products via Federated Authentication with JIT Provisioning Leading to User Impersonation | WSO2 | WSO2 API Manager | High | 8.5 | 2023-12-15 09:41:23 | Deep Dive |