Security
Headlines
HeadlinesLatestCVEs

Source

CVE

CVE-2023-32035

Remote Procedure Call Runtime Denial of Service Vulnerability

CVE
#vulnerability#dos
CVE-2023-36825: Deserialization of Untrusted Data leads to Remote Code Execution

Decidim is a participatory democracy framework, written in Ruby on Rails, originally developed for the Barcelona City government online and offline participation website. This vulnerability is related to the deserialization of untrusted data from the `_state` query parameter, which can result in remote code execution. The issue has been addressed in version `14.5.0`. Users are advised to upgrade their software to this version or any subsequent versions that include the patch.

CVE-2023-33150

Microsoft Office Security Feature Bypass Vulnerability

CVE-2023-33127

.NET and Visual Studio Elevation of Privilege Vulnerability

CVE-2023-35302

Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability

CVE-2023-35303

USB Audio Class System Driver Remote Code Execution Vulnerability

CVE-2023-35298

HTTP.sys Denial of Service Vulnerability

CVE-2023-35308

Windows MSHTML Platform Security Feature Bypass Vulnerability

CVE-2023-35306

Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability

CVE-2023-35305

Windows Kernel Elevation of Privilege Vulnerability