Vulnerabilities > Origin Validation Error

DATE CVE VULNERABILITY TITLE RISK
2023-10-23 CVE-2023-28795 Origin Validation Error vulnerability in Zscaler Client Connector 1.3/1.3.0.31/1.3.1
Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Inclusion of Code in Existing Process.
local
low complexity
zscaler CWE-346
7.8
2023-10-11 CVE-2023-44189 Origin Validation Error vulnerability in Juniper Junos OS Evolved
An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10003 Series allows a network-adjacent attacker to bypass MAC address checking, allowing MAC addresses not intended to reach the adjacent LAN to be forwarded to the downstream network.
low complexity
juniper CWE-346
5.4
2023-10-11 CVE-2023-44190 Origin Validation Error vulnerability in Juniper Junos OS Evolved
An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10001, PTX10004, PTX10008, and PTX10016 devices allows a network-adjacent attacker to bypass MAC address checking, allowing MAC addresses not intended to reach the adjacent LAN to be forwarded to the downstream network.
low complexity
juniper CWE-346
5.4
2023-10-03 CVE-2023-3654 Origin Validation Error vulnerability in Cashit Cashit! 03.A06Rks2023.02.37
cashIT! - serving solutions.
network
low complexity
cashit CWE-346
critical
9.8
2023-09-14 CVE-2023-2848 Origin Validation Error vulnerability in Movim
Movim prior to version 0.22 is affected by a Cross-Site WebSocket Hijacking vulnerability.
network
low complexity
movim CWE-346
8.8
2023-08-04 CVE-2023-29505 Origin Validation Error vulnerability in Zohocorp Manageengine Network Configuration Manager 12.6
An issue was discovered in Zoho ManageEngine Network Configuration Manager 12.6.165.
network
low complexity
zohocorp CWE-346
8.8
2023-08-01 CVE-2023-4045 Origin Validation Error vulnerability in multiple products
Offscreen Canvas did not properly track cross-origin tainting, which could have been used to access image data from another site in violation of same-origin policy.
network
low complexity
mozilla debian CWE-346
5.3
2023-07-26 CVE-2023-30949 Origin Validation Error vulnerability in Palantir Slate
A missing origin validation in Slate sandbox could be exploited by a malicious user to modify the page's content, which could lead to phishing attacks.
network
low complexity
palantir CWE-346
5.3
2023-07-25 CVE-2023-2850 Origin Validation Error vulnerability in Nodebb
NodeBB is affected by a Cross-Site WebSocket Hijacking vulnerability due to missing validation of the request origin.
network
low complexity
nodebb CWE-346
4.7
2023-07-17 CVE-2023-3581 Origin Validation Error vulnerability in Mattermost Server
Mattermost fails to properly validate the origin of a websocket connection allowing a MITM attacker on Mattermost to access the websocket APIs.
network
high complexity
mattermost CWE-346
8.1