2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2023-41960LOW3.3The vulnerability allows an unprivileged(untrusted) third-party application to interact with a content-provider unsafely...
CVE-2023-45809LOW2.7Wagtail is an open source content management system built on Django. A user with a limited-permission editor account for...
CVE-2023-45145LOW3.6Redis is an in-memory database that persists on disk. On startup, Redis begins listening on a Unix socket before adjusti...
CVE-2023-38546LOW3.7This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of c...
CVE-2023-22128LOW3.1Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). Supported versions that are affe...
CVE-2023-22113LOW2.7Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions...
CVE-2023-22075LOW2.4Vulnerability in the Oracle Database Sharding component of Oracle Database Server. Supported versions that are affected...
CVE-2023-22074LOW2.4Vulnerability in the Oracle Database Sharding component of Oracle Database Server. Supported versions that are affected...
CVE-2023-22025LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition, product of Oracle Java S...
CVE-2023-4089LOW2.7On affected Wago products an remote attacker with administrative privileges can access files to which he has already acc...
CVE-2023-45659LOW2.8Engelsystem is a shift planning system for chaos events. If a users' password is compromised and an attacker gained acc...
CVE-2023-45152LOW2.3Engelsystem is a shift planning system for chaos events. A Blind SSRF in the "Import schedule" functionality makes it po...
CVE-2023-43814LOW3.7Discourse is an open source platform for community discussion. Attackers with details specific to a poll in a topic can ...
CVE-2023-45147LOW3.1Discourse is an open source community platform. In affected versions any user can create a topic and add arbitrary custo...
CVE-2023-5449LOW3.3A potential security vulnerability has been identified in certain HP Displays supporting the Theft Deterrence feature wh...
CVE-2023-41263LOW3.7An issue was discovered in Plixer Scrutinizer before 19.3.1. It exposes debug logs to unauthenticated users at the /debu...
CVE-2023-45143LOW3.5Undici is an HTTP/1.1 client written from scratch for Node.js. Prior to version 5.26.2, Undici already cleared Authoriza...
CVE-2023-37939LOW3.3An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient for Windows 7.2.0, ...
CVE-2023-30735LOW3.3Improper Preservation of Permissions vulnerability in SAssistant prior to version 8.7 allows local attackers to access b...
CVE-2023-30732LOW3.3Improper access control in system property prior to SMR Oct-2023 Release 1 allows local attacker to get CPU serial numbe...
CVE-2023-28373LOW2.7A flaw exists in FlashArray Purity whereby an array administrator by configuring an external key manager can affect the ...
CVE-2023-36627LOW2.7A flaw exists in FlashBlade Purity whereby a user with access to an administrative account on a FlashBlade that is confi...
CVE-2023-28372LOW2.7A flaw exists in FlashBlade Purity (OE) Version 4.1.0 whereby a user with privileges to extend an object’s retention per...
CVE-2023-5313LOW3.7A vulnerability classified as problematic was found in phpkobo Ajax Poll Script 3.18. Affected by this vulnerability is ...
CVE-2023-5193LOW2.7Mattermost fails to properly check permissions when retrieving a post allowing for a System Role with the permission to ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now