Vulnerabilities > Insufficient Verification of Data Authenticity

DATE CVE VULNERABILITY TITLE RISK
2023-12-24 CVE-2023-51765 Insufficient Verification of Data Authenticity vulnerability in multiple products
sendmail through 8.17.2 allows SMTP smuggling in certain configurations.
network
low complexity
sendmail freebsd redhat CWE-345
5.3
2023-12-24 CVE-2023-51766 Insufficient Verification of Data Authenticity vulnerability in multiple products
Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations.
network
low complexity
exim fedoraproject debian CWE-345
5.3
2023-12-24 CVE-2023-51764 Insufficient Verification of Data Authenticity vulnerability in multiple products
Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and smtpd_discard_ehlo_keywords=chunking (or certain other options that exist in recent versions).
network
low complexity
postfix fedoraproject redhat CWE-345
5.3
2023-12-21 CVE-2023-51655 Insufficient Verification of Data Authenticity vulnerability in Jetbrains Intellij Idea
In JetBrains IntelliJ IDEA before 2023.3.2 code execution was possible in Untrusted Project mode via a malicious plugin repository specified in the project configuration
network
low complexity
jetbrains CWE-345
critical
9.8
2023-12-11 CVE-2023-45292 Insufficient Verification of Data Authenticity vulnerability in Mojotv Base64Captcha
When using the default implementation of Verify to check a Captcha, verification can be bypassed.
network
low complexity
mojotv CWE-345
5.3
2023-12-01 CVE-2023-44402 Insufficient Verification of Data Authenticity vulnerability in Electronjs Electron
Electron is an open source framework for writing cross-platform desktop applications using JavaScript, HTML and CSS.
local
high complexity
electronjs CWE-345
7.0
2023-11-30 CVE-2023-49087 Insufficient Verification of Data Authenticity vulnerability in Simplesamlphp Saml2 and Xml-Security
xml-security is a library that implements XML signatures and encryption.
network
low complexity
simplesamlphp CWE-345
7.5
2023-11-17 CVE-2023-48238 Insufficient Verification of Data Authenticity vulnerability in Joaquimserafim Json web Token
joaquimserafim/json-web-token is a javascript library use to interact with JSON Web Tokens (JWT) which are a compact URL-safe means of representing claims to be transferred between two parties.
network
low complexity
joaquimserafim CWE-345
7.5
2023-11-14 CVE-2023-47630 Insufficient Verification of Data Authenticity vulnerability in Kyverno
Kyverno is a policy engine designed for Kubernetes.
network
high complexity
kyverno CWE-345
7.1
2023-11-14 CVE-2023-47631 Insufficient Verification of Data Authenticity vulnerability in Vantage6
vantage6 is a framework to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC).
network
low complexity
vantage6 CWE-345
8.8