Exploited vulnerabilities
CVEs published in the last 120 days, plus everything on CISA’s known-exploited list. Scores, exploit likelihood and exploitation status in one place.
| Score | CVE | Affected | EPSS | Published |
|---|---|---|---|---|
| 9.8 critical | CVE-2023-6448 KEV | Unitronics VisiLogic Unitronics VisiLogic before version 9.9.00, used in Vision and Samba PLCs and HMIs, uses a default administrative password. An unauthenticated attacker with network access can take administrative control of a vulnerable system. | 2.1% | 5 Dec 2023 |
| 7.8 high | CVE-2023-33107 KEV | Qualcomm, Inc. Snapdragon Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call. | 0.74% | 5 Dec 2023 |
| 7.8 high | CVE-2023-33106 KEV | Qualcomm, Inc. Snapdragon Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. | 0.79% | 5 Dec 2023 |
| 7.8 high | CVE-2023-33063 KEV | Qualcomm, Inc. Snapdragon Memory corruption in DSP Services during a remote call from HLOS to DSP. | 0.67% | 5 Dec 2023 |
| 8.8 high | CVE-2023-42917 KEV | Apple Safari A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1. | 9.3% | 30 Nov 2023 |
| 6.5 medium | CVE-2023-42916 KEV | Apple Safari An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1. | 18% | 30 Nov 2023 |
| 9.6 critical | CVE-2023-6345 KEV | Google Chrome Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High) | 16% | 29 Nov 2023 |
| 9.8 critical | CVE-2023-49105 KEV | owncloud server An issue was discovered in ownCloud owncloud/core before 10.13.1. An attacker can access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured. This occurs because pre-signed URLs can be accepted even when no signing-key is configured for the owner of the files. The earliest affected version is 10.6.0. | 43% | 21 Nov 2023 |
| 7.5 high | CVE-2023-49103 KEV | owncloud graph api An issue was discovered in ownCloud owncloud/graphapi 0.2.x before 0.2.1 and 0.3.x before 0.3.1. The graphapi app relies on a third-party GetPhpInfo.php library that provides a URL. When this URL is accessed, it reveals the configuration details of the PHP environment (phpinfo). This information includes all the environment variables of the webserver. In containerized deployments, these environment variables may include sensitive data such as the ownCloud admin password, mail server credentials, and license key. Simply disabling the graphapi app does not eliminate the vulnerability. Additionally, phpinfo exposes various other potentially sensitive configuration details that could be exploited by an attacker to gather information about the system. Therefore, even if ownCloud is not running in a containerized environment, this vulnerability should still be a cause for concern. Note that Docker containers from before February 2023 are not vulnerable to the credential disclosure. | 78% | 21 Nov 2023 |
| 9.9 critical | CVE-2023-48365 KEV | qlik sense Qlik Sense Enterprise for Windows before August 2023 Patch 2 allows unauthenticated remote code execution, aka QB-21683. Due to improper validation of HTTP headers, a remote attacker is able to elevate their privilege by tunneling HTTP requests, allowing them to execute HTTP requests on the backend server that hosts the repository application. The fixed versions are August 2023 Patch 2, May 2023 Patch 6, February 2023 Patch 10, November 2022 Patch 12, August 2022 Patch 14, May 2022 Patch 16, February 2022 Patch 15, and November 2021 Patch 17. NOTE: this issue exists because of an incomplete fix for CVE-2023-41265. | 47% | 15 Nov 2023 |
| 7.8 high | CVE-2023-36424 KEV | Microsoft Windows 11 version 22H3 Windows Common Log File System Driver Elevation of Privilege Vulnerability | 12% | 14 Nov 2023 |
| 7.8 high | CVE-2023-36036 KEV | Microsoft Windows 10 Version 1809 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | 17% | 14 Nov 2023 |
| 7.8 high | CVE-2023-36033 KEV | Microsoft Windows 10 Version 1809 Windows DWM Core Library Elevation of Privilege Vulnerability | 11% | 14 Nov 2023 |
| 8.8 high | CVE-2023-36025 KEV | Microsoft Windows 10 Version 1809 Windows SmartScreen Security Feature Bypass Vulnerability | 88% | 14 Nov 2023 |
| 9.8 critical | CVE-2023-47246 KEV | sysaid_on-premises In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023. | 99% | 10 Nov 2023 |
| 9.8 critical | CVE-2023-22518 KEV | Atlassian Confluence Data Center All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. This Improper Authorization vulnerability allows an unauthenticated attacker to reset Confluence and create a Confluence instance administrator account. Using this account, an attacker can then perform all administrative actions that are available to Confluence instance administrator leading to - but not limited to - full loss of confidentiality, integrity and availability. Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue. | >99% | 31 Oct 2023 |
| 9.8 critical | CVE-2023-46604 KEV | Apache Software Foundation Apache ActiveMQ The Java OpenWire protocol marshaller is vulnerable to Remote Code Execution. This vulnerability may allow a remote attacker with network access to either a Java-based OpenWire broker or client to run arbitrary shell commands by manipulating serialized class types in the OpenWire protocol to cause either the client or the broker (respectively) to instantiate any class on the classpath. Users are recommended to upgrade both brokers and clients to version 5.15.16, 5.16.7, 5.17.6, or 5.18.3 which fixes this issue. | >99% | 27 Oct 2023 |
| 8.8 high | CVE-2023-46748 KEV | F5 BIG-IP An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility which may allow an authenticated attacker with network access to the Configuration utility through the BIG-IP management port and/or self IP addresses to execute arbitrary system commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated | 4.5% | 26 Oct 2023 |
| 9.8 critical | CVE-2023-46747 KEV | F5 BIG-IP Undisclosed requests may bypass configuration utility authentication, allowing an attacker with network access to the BIG-IP system through the management port and/or self IP addresses to execute arbitrary system commands. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated | 97% | 26 Oct 2023 |
| 9.8 critical | CVE-2023-43208 KEV | nextgen mirth connect NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is caused by the incomplete patch of CVE-2023-37679. | 83% | 26 Oct 2023 |