2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32568 | HIGH | 7.2 | 0.7% | May 10, 2023 | An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The VIOM... |
| CVE-2023-2616 | MEDIUM | 5.4 | 0.5% | May 10, 2023 | Cross-site Scripting (XSS) - Generic in GitHub repository pimcore/pimcore prior to 10.5.21. |
| CVE-2023-26126 | MEDIUM | 5.3 | 1.0% | May 10, 2023 | All versions of the package m.static are vulnerable to Directory Traversal due to improper input sanitization of the pat... |
| CVE-2023-25833 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | There is an HTML injection vulnerability in Esri Portal for ArcGIS versions 11.0 and below that may allow a remote, auth... |
| CVE-2023-31478 | HIGH | 7.5 | 29.7% | May 9, 2023 | An issue was discovered on GL.iNet devices before 3.216. An API endpoint reveals information about the Wi-Fi configurati... |
| CVE-2023-2610 | HIGH | 7.8 | 0.5% | May 9, 2023 | Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1532. |
| CVE-2023-2156 | HIGH | 7.5 | 6.1% | May 9, 2023 | A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue res... |
| CVE-2023-28318 | MEDIUM | 5.3 | 0.3% | May 9, 2023 | A vulnerability has been discovered in Rocket.Chat, where messages can be hidden regardless of the Message_KeepHistory o... |
| CVE-2023-28317 | MEDIUM | 5.3 | 0.2% | May 9, 2023 | A vulnerability has been discovered in Rocket.Chat, where editing messages can change the original timestamp, causing th... |
| CVE-2023-28316 | CRITICAL | 9.8 | 0.7% | May 9, 2023 | A security vulnerability has been discovered in the implementation of 2FA on the rocket.chat platform, where other activ... |
| CVE-2023-28128 | HIGH | 7.2 | 84.7% | May 9, 2023 | An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could... |
| CVE-2023-28127 | HIGH | 7.5 | 58.6% | May 9, 2023 | A path traversal vulnerability exists in Avalanche version 6.3.x and below that when exploited could result in possible ... |
| CVE-2023-28126 | MEDIUM | 5.9 | 66.7% | May 9, 2023 | An authentication bypass vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to gain... |
| CVE-2023-28125 | MEDIUM | 5.9 | 2.3% | May 9, 2023 | An improper authentication vulnerability exists in Avalanche Premise versions 6.3.x and below that could allow an attack... |
| CVE-2023-30057 | MEDIUM | 5.4 | 0.6% | May 9, 2023 | Multiple stored cross-site scripting (XSS) vulnerabilities in FICO Origination Manager Decision Module 4.8.1 allow attac... |
| CVE-2023-30056 | HIGH | 7.5 | 1.0% | May 9, 2023 | A session takeover vulnerability exists in FICO Origination Manager Decision Module 4.8.1 due to insufficient protection... |
| CVE-2023-25832 | HIGH | 8.8 | 0.3% | May 9, 2023 | There is a cross-site-request forgery vulnerability in Esri Portal for ArcGIS Versions 11.0 and below that may allow an ... |
| CVE-2023-25831 | MEDIUM | 6.1 | 0.5% | May 9, 2023 | There is a reflected XSS vulnerability in Esri Portal for ArcGIS versions 10.9.1and below which may allow a remote, unau... |
| CVE-2023-20524 | HIGH | 7.5 | 0.5% | May 9, 2023 | An attacker with a compromised ASP could possibly send malformed commands to an ASP on another CPU, resulting in an out ... |
| CVE-2023-20520 | CRITICAL | 9.8 | 0.8% | May 9, 2023 | Improper access control settings in ASP Bootloader may allow an attacker to corrupt the return address causing a stack-b... |
| CVE-2023-31474 | HIGH | 7.5 | 0.8% | May 9, 2023 | An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to in... |
| CVE-2023-31472 | HIGH | 7.5 | 19.9% | May 9, 2023 | An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be ... |
| CVE-2023-2609 | MEDIUM | 5.5 | 0.5% | May 9, 2023 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531. |
| CVE-2023-29343 | HIGH | 7.8 | 1.7% | May 9, 2023 | SysInternals Sysmon for Windows Elevation of Privilege Vulnerability |
| CVE-2023-29341 | HIGH | 7.8 | 0.7% | May 9, 2023 | AV1 Video Extension Remote Code Execution Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now