Vulnerabilities > Origin Validation Error

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-36421 Origin Validation Error vulnerability in Flowiseai Flowise 1.4.3
Flowise is a drag & drop user interface to build a customized large language model flow.
network
low complexity
flowiseai CWE-346
7.5
2024-06-25 CVE-2024-6301 Origin Validation Error vulnerability in Conduit
Lack of validation of origin in federation API in Conduit, allowing any remote server to impersonate any user from any server in most EDUs
network
low complexity
conduit CWE-346
7.5
2024-06-10 CVE-2024-36303 Origin Validation Error vulnerability in Trendmicro Apex ONE
An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. This vulnerability is similar to, but not identical to, CVE-2024-36302.
local
low complexity
trendmicro CWE-346
7.8
2024-05-03 CVE-2023-27360 Origin Validation Error vulnerability in Netgear Rax30 Firmware
NETGEAR RAX30 lighttpd Misconfiguration Remote Code Execution Vulnerability.
low complexity
netgear CWE-346
8.8
2024-04-05 CVE-2024-2447 Origin Validation Error vulnerability in Mattermost Server
Mattermost versions 8.1.x before 8.1.11, 9.3.x before 9.3.3, 9.4.x before 9.4.4, and 9.5.x before 9.5.2 fail to authenticate the source of certain types of post actions, allowing an authenticated attacker to create posts as other users via a crafted post action.
network
low complexity
mattermost CWE-346
6.5
2024-04-05 CVE-2023-5973 Origin Validation Error vulnerability in Broadcom Fabric Operating System
Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user if the portName contains reserved characters.
network
low complexity
broadcom CWE-346
4.3
2024-02-21 CVE-2024-25124 Origin Validation Error vulnerability in Gofiber Fiber
Fiber is a web framework written in go.
network
low complexity
gofiber CWE-346
critical
9.8
2024-02-20 CVE-2024-26135 Origin Validation Error vulnerability in Meshcentral
MeshCentral is a full computer management web site.
network
low complexity
meshcentral CWE-346
8.8
2024-02-14 CVE-2024-0009 Origin Validation Error vulnerability in Paloaltonetworks Pan-Os
An improper verification vulnerability in the GlobalProtect gateway feature of Palo Alto Networks PAN-OS software enables a malicious user with stolen credentials to establish a VPN connection from an unauthorized IP address.
network
low complexity
paloaltonetworks CWE-346
6.3
2024-02-01 CVE-2024-24557 Origin Validation Error vulnerability in Mobyproject Moby
Moby is an open-source project created by Docker to enable software containerization.
local
low complexity
mobyproject CWE-346
7.8