CVE.report search for "CVE-2023-1150"

Listed below are 50 relevant search results for "CVE-2023-1150" based on Vendor, Software, and CVE description

These results are gathered from attempted matches with listed vendor and software data, as well as a keyword search in the description of all known CVEs.

If you notice a "Not Listed" in either the vendor or software columns, the underlying source record does not currently include normalized affected-product data.

Search Results

CVE ID Vendor Software Description
CVE-2026-48208An improper neutralization of active SVG content in OTRS or ((OTRS)) Community Edition ticket article rendering allows attack...
CVE-2026-48191An incorrect handling of permissions in STORM powered by OTRS and in OTRS (2026.x and above) Document Search Article Meta Fil...
CVE-2026-48190An incorrect handling of permissions in OTRS External Interface and the ConfigItem List module allows an authenticated custom...
CVE-2026-48189An improper Input Validation vulnerability in OTRS Customer Backend module allows to access customer information which are re...
CVE-2026-48188An improper Input Validation vulnerability in OTRS or ((OTRS)) Community Edition database layer module allows an unauthentic...
CVE-2026-48187An uncontrolled allocation of resources without limits or throttling in the e-mail handling in OTRS allows excessive allocati...
CVE-2026-47358TenableTerrascanTerrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via external URL resolution in uploaded IaC ...
CVE-2026-47357TenableTerrascanTerrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via the remote_url parameter in the remote d...
CVE-2026-47356TenableTerrascanTerrascan v1.18.3 and prior are vulnerable to Server-Side Request Forgery (SSRF) via the webhook_url parameter in the file sc...
CVE-2026-46052In the Linux kernel, the following vulnerability has been resolved: ceph: only d_add() negative dentries when they are unhas...
CVE-2026-43420In the Linux kernel, the following vulnerability has been resolved: ceph: fix i_nlink underrun during async unlink During a...
CVE-2026-41887Flarum is open-source forum software. Prior to versions 1.8.16 and 2.0.0-rc.1, Flarum's patch for CVE-2023-27577 restricted t...
CVE-2026-41231FroxlorFroxlorFroxlor is open source server administration software. Prior to version 2.3.6, `DataDump.add()` constructs the export destina...
CVE-2026-41145MinioMinioMinIO is a high-performance object storage system. Starting in RELEASE.2023-05-18T00-05-36Z and prior to RELEASE.2026-04-11T0...
CVE-2026-41078OpentelemetryOpentelemetryOpenTelemetry dotnet is a dotnet telemetry framework. In 1.6.0-rc.1 and earlier, OpenTelemetry.Exporter.Jaeger may allow sust...
CVE-2026-40489editorconfig-core-c is an EditorConfig core library for use by plugins supporting EditorConfig parsing. Versions up to and i...
CVE-2026-40344MinioMinioMinIO is a high-performance object storage system. Starting in RELEASE.2023-05-18T00-05-36Z and prior to RELEASE.2026-04-11T0...
CVE-2026-37537collin80/Open-SAE-J1939 thru commit 744024d4306bc387857dfce439558336806acb06 (2023-03-08) contains an integer underflow leadi...
CVE-2026-35576ChurchcrmChurchcrmChurchCRM is an open-source church management system. Prior to 7.0.0, a stored cross-site scripting (XSS) vulnerability exist...
CVE-2026-34950NearformFast-jwtfast-jwt provides fast JSON Web Token (JWT) implementation. In 6.1.0 and earlier, the publicKeyPemMatcher regex in fast-jwt/s...
CVE-2026-34619AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Director...
CVE-2026-33534EspocrmEspocrmEspoCRM is an open source customer relationship management application. Versions 9.3.3 and below have an authenticated Server...
CVE-2026-31601LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: vfio/xe: Reorganize the init to decouple migration from ...
CVE-2026-31593LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Reject attempts to sync VMSA of an already-lau...
CVE-2026-27308AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could...
CVE-2026-27307AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Uncontrolled Resource Consumption vulnerability that could...
CVE-2026-27306AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Input Validation vulnerability that could result ...
CVE-2026-27305AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Director...
CVE-2026-27304AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Input Validation vulnerability that could result ...
CVE-2026-27282AdobeColdfusionColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Input Validation vulnerability that could result ...
CVE-2026-24120Vm2 ProjectVm2vm2 is an open source vm/sandbox for Node.js. Prior to version 3.10.5, the fix for CVE-2023-37466 is insufficient and can be ...
CVE-2026-23369LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: i2c: i801: Revert "i2c: i801: replace acpi_lock with I2C...
CVE-2026-8723### Summary `qs.stringify` throws `TypeError` when called with `arrayFormat: 'comma'` and `encodeValuesOnly: true` on an a...
CVE-2026-6060A vulnerability in the SQL Box in the admin interface of OTRS leads to an uncontrolled resource consumption leading to a DoS ...
CVE-2026-3990A security flaw has been discovered in CesiumGS CesiumJS up to 1.137.0. Affected by this issue is some unknown functionality ...
CVE-2026-3828Some Hikvision switch products (discontinued since December 2023) are vulnerable to authenticated remote command execution du...
CVE-2026-3609Wellbia's XIGNCODE3 xhunter1.sys kernel driver Privilege Escalation Vulnerability provides access to IRP_MJ_REITS command int...
CVE-2025-62188ApacheDolphinschedulerAn Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Apache DolphinScheduler. This vulnerab...
CVE-2025-61813AdobeColdfusionColdFusion versions 2025.4, 2023.16, 2021.22 and earlier are affected by an Improper Restriction of XML External Entity Refer...
CVE-2025-39405Incorrect Privilege Assignment vulnerability in mojoomla WPAMS apartment-management allows Privilege Escalation.This issue af...
CVE-2025-39403Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mojoomla WPAMS apartmen...
CVE-2025-39402Unrestricted Upload of File with Dangerous Type vulnerability in mojoomla WPAMS apartment-management allows Upload a Web Shel...
CVE-2025-39401Unrestricted Upload of File with Dangerous Type vulnerability in mojoomla WPAMS apartment-management allows Upload a Web Shel...
CVE-2025-39395Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mojoomla WPAMS apartmen...
CVE-2025-39393Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mojoomla Hospital Manag...
CVE-2025-39392Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mojoomla WPAMS apartmen...
CVE-2025-39386Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mojoomla Hospital Manag...
CVE-2025-39380Unrestricted Upload of File with Dangerous Type vulnerability in mojoomla Hospital Management System hospital-management allo...
CVE-2025-39357Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mojoomla Hospital Manag...
CVE-2025-15097A vulnerability was found in Alteryx Server. Affected by this issue is some unknown functionality of the file /gallery/api/st...
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report