CVE-2023-1671: Sophos Web Appliance Command Injection Vulnerability
CVE-2023-1671 affects Sophos Web Appliance and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-16.
Deep dives, practical guides, and incident analyses from engineers who build Safeguard. No fluff, no vendor FUD — just what you need to ship secure software.
CVE-2023-1671 affects Sophos Web Appliance and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-16.
CVE-2023-36584 affects Microsoft Windows and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-16.
CVE-2023-4911 affects GNU GNU C Library and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-21.
CVE-2023-49103 affects ownCloud ownCloud graphapi and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-30.
CVE-2023-6345 affects Google Chromium Skia and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-11-30.
CVE-2023-42916 affects Apple Multiple Products and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-12-04.
CVE-2023-42917 affects Apple Multiple Products and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-12-04.
CVE-2022-22071 affects Qualcomm Multiple Chipsets and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-12-05.
CVE-2023-33063 affects Qualcomm Multiple Chipsets and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-12-05.
Weekly insights on software supply chain security, delivered to your inbox.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.