diff --git a/cache/NVD.dat b/cache/NVD.dat index f713b103a7d..99cd6181268 100644 --- a/cache/NVD.dat +++ b/cache/NVD.dat @@ -195,3 +195,5 @@ d5f9b68a051c497fca8417eb1e6f4095 c067401155eebe16566d819dbbc0fdd9 77fb68b61f9b45e5d5d973d9698f7d7d c4c8e6fad1208c422fb884063dc408dc +be01985caf3d13a706450396ccdce1b6 +55154e097ca9cd9178e1cedd8fe4e00b diff --git a/data/cves.db b/data/cves.db index e2da8b76be9..8ea07a4641b 100644 Binary files a/data/cves.db and b/data/cves.db differ diff --git a/docs/index.html b/docs/index.html index d613254ba11..90d74606529 100644 --- a/docs/index.html +++ b/docs/index.html @@ -1,4 +1,4 @@ - + @@ -2235,6 +2235,22 @@

眈眈探求 | 详情 + + 55154e097ca9cd9178e1cedd8fe4e00b + CVE-2023-5074 + 2023-09-20 16:15:12 + Use of a static key to protect a JWT token used in user authentication can allow an for an authentication bypass in D-Link D-View 8 v2.0.1.28 + 详情 + + + + be01985caf3d13a706450396ccdce1b6 + CVE-2023-5084 + 2023-09-20 10:15:15 + Cross-site Scripting (XSS) - Reflected in GitHub repository hestiacp/hestiacp prior to 1.8.8. + 详情 + + 1d49a765844dd4af56f01d5405420162 CVE-2023-5063 @@ -2451,22 +2467,6 @@

眈眈探求 | 详情 - - d4b3d6114a20ff6ba8c50b281a8651f7 - CVE-2023-3301 - 2023-09-13 17:15:10 - A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service. - 详情 - - - - 5e24d726519cb9e77e0fd845029e7f16 - CVE-2023-3255 - 2023-09-13 17:15:09 - A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when inflating an attacker controlled zlib buffer in the `inflate_buffer` function. This could allow a remote authenticated client who is able to send a clipboard to the VNC server to trigger a denial of service. - 详情 - -