VulnSea

Weekly digest

Week 47, 2023 (20–26 Nov)

11 new CVEs this week, in line with the recent average. Of those, 2 critical and 2 high. One arrived with exploitation evidence or public exploit code already attached. No new KEV entries.

11
New CVEs
2
Critical
0
KEV additions
0
Records changed

New this week, ranked by depth score

The 11 that matter most of the 11 published.

CVE-2023-49105Critical· 9.8CISA KEVPoC
2y ago

An issue was discovered in ownCloud owncloud/core before 10.13.1

An issue was discovered in ownCloud owncloud/core before 10.13.1. An attacker can access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured. This occurs b…

▾ Hadalowncloud · owncloud_serverEPSS 43%via NVD
CVE-2023-49060Critical· 9.8
2y ago

An attacker could have accessed internal pages or data by ex-filtrating a security key from ReaderMode via the `referrerpolicy` attribute

An attacker could have accessed internal pages or data by ex-filtrating a security key from ReaderMode via the `referrerpolicy` attribute. This vulnerability affects Firefox for iOS < 120.

▾ Midnightmozilla · firefox_mobileEPSS 0.64%via NVD
CVE-2023-48699High· 8.4
2y ago

Eval Injection in fastbots

Eval Injection in fastbots

▾ Twilightfastbots · fastbotsEPSS 0.74%via OSV
CVE-2023-47890High· 7.6
2y ago

Download to arbitrary folder can lead to RCE

Download to arbitrary folder can lead to RCE

▾ Twilightpyload-ng · pyload-ngEPSS 1.1%via OSV
CVE-2023-47821Medium· 6.5
2y ago

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jannis Thuemmig Email Encoder plugin <= 2.1.8 versions.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jannis Thuemmig Email Encoder plugin <= 2.1.8 versions.

▾ Sunlitonlineoptimisation · email_encoderEPSS 0.42%via NVD
CVE-2023-49061Medium· 6.1
2y ago

An attacker could have performed HTML template injection via Reader Mode and exfiltrated user information

An attacker could have performed HTML template injection via Reader Mode and exfiltrated user information. This vulnerability affects Firefox for iOS < 120.

▾ Sunlitmozilla · firefox_mobileEPSS 0.31%via NVD
CVE-2023-49092Medium· 5.9
2y ago

Marvin Attack: potential key recovery through timing sidechannels

Marvin Attack: potential key recovery through timing sidechannels

▾ Sunlitrsa · rsaEPSS 0.61%via OSV
CVE-2023-48700Medium· 5.7
2y ago

Clear Text Credentials Exposed via Onboarding Task

Clear Text Credentials Exposed via Onboarding Task

▾ Sunlitnautobot-device-onboarding · nautobot-device-onboardingEPSS 0.41%via OSV
CVE-2023-48299Medium· 5.3
2y ago

TorchServe ZipSlip

TorchServe ZipSlip

▾ Sunlittorchserve · torchserveEPSS 0.68%via OSV
GHSA-2c7c-3mj9-8fqhMedium
2y ago

Decryption of malicious PBES2 JWE objects can consume unbounded system resources

Decryption of malicious PBES2 JWE objects can consume unbounded system resources

▾ Sunlitgo-jose · github.com/go-jose/go-jose/v3via OSV
CVE-2023-48706Low· 3.6
2y ago

Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability

Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability. When executing a `:s` command for the very first time and using a sub-replace-special atom inside the substitution part, it is possible that t…

▾ Sunlitneovim · neovimEPSS 0.54%via NVD

Most-affected vendors

By CVEs published in the period.