Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2023-09-29 CVE-2023-3906 Unspecified vulnerability in Gitlab
An input validation issue in the asset proxy in GitLab EE, affecting all versions from 12.3 prior to 16.2.8, 16.3 prior to 16.3.5, and 16.4 prior to 16.4.1, allowed an authenticated attacker to craft image urls which bypass the asset proxy.
network
low complexity
gitlab
3.5
2023-09-28 CVE-2023-38872 Authorization Bypass Through User-Controlled Key vulnerability in Economizzer 0.9/April2023
An Insecure Direct Object Reference (IDOR) vulnerability in gugoan Economizzer commit 3730880 (April 2023) and v.0.9-beta1 allows any unauthenticated attacker to access cash book entry attachments of any other user, if they know the Id of the attachment.
network
high complexity
economizzer CWE-639
3.7
2023-09-27 CVE-2023-40384 Unspecified vulnerability in Apple products
A permissions issue was addressed with improved redaction of sensitive information.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40386 Unspecified vulnerability in Apple Macos
A privacy issue was addressed with improved handling of temporary files.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40395 Unspecified vulnerability in Apple products
The issue was addressed with improved handling of caches.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40427 Unspecified vulnerability in Apple products
The issue was addressed with improved handling of caches.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40434 Unspecified vulnerability in Apple Macos
A configuration issue was addressed with additional restrictions.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40456 Unspecified vulnerability in Apple products
The issue was addressed with improved checks.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-40520 Unspecified vulnerability in Apple products
The issue was addressed with improved checks.
local
low complexity
apple
3.3
2023-09-27 CVE-2023-41065 Unspecified vulnerability in Apple products
A privacy issue was addressed with improved private data redaction for log entries.
local
low complexity
apple
3.3