Vulnerabilities > Insufficient Verification of Data Authenticity
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-24 | CVE-2023-51765 | Insufficient Verification of Data Authenticity vulnerability in multiple products sendmail through 8.17.2 allows SMTP smuggling in certain configurations. | 5.3 |
2023-12-24 | CVE-2023-51766 | Insufficient Verification of Data Authenticity vulnerability in multiple products Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. | 5.3 |
2023-12-24 | CVE-2023-51764 | Insufficient Verification of Data Authenticity vulnerability in multiple products Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and smtpd_discard_ehlo_keywords=chunking (or certain other options that exist in recent versions). | 5.3 |
2023-12-21 | CVE-2023-51655 | Insufficient Verification of Data Authenticity vulnerability in Jetbrains Intellij Idea In JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible in Untrusted Project mode via a malicious plugin repository specified in the project configuration | 9.8 |
2023-12-11 | CVE-2023-45292 | Insufficient Verification of Data Authenticity vulnerability in Mojotv Base64Captcha When using the default implementation of Verify to check a Captcha, verification can be bypassed. | 5.3 |
2023-12-01 | CVE-2023-44402 | Insufficient Verification of Data Authenticity vulnerability in Electronjs Electron Electron is an open source framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. | 7.0 |
2023-11-30 | CVE-2023-49087 | Insufficient Verification of Data Authenticity vulnerability in Simplesamlphp Saml2 and Xml-Security xml-security is a library that implements XML signatures and encryption. | 7.5 |
2023-11-17 | CVE-2023-48238 | Insufficient Verification of Data Authenticity vulnerability in Joaquimserafim Json web Token joaquimserafim/json-web-token is a javascript library use to interact with JSON Web Tokens (JWT) which are a compact URL-safe means of representing claims to be transferred between two parties. | 7.5 |
2023-11-14 | CVE-2023-47630 | Insufficient Verification of Data Authenticity vulnerability in Kyverno Kyverno is a policy engine designed for Kubernetes. | 7.1 |
2023-11-14 | CVE-2023-47631 | Insufficient Verification of Data Authenticity vulnerability in Vantage6 vantage6 is a framework to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC). | 8.8 |