2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26517 | MEDIUM | 4.8 | 0.4% | May 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Jeff Starr Dashboard Widgets Suite plugin <= 3.2.1 ver... |
| CVE-2023-24957 | MEDIUM | 5.4 | 0.4% | May 6, 2023 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2,... |
| CVE-2023-29963 | HIGH | 7.2 | 1.6% | May 5, 2023 | S-CMS v5.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the component /admin... |
| CVE-2023-29354 | MEDIUM | 4.7 | 1.4% | May 5, 2023 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability |
| CVE-2023-29350 | HIGH | 7.5 | 2.6% | May 5, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-30065 | HIGH | 8.8 | 1.3% | May 5, 2023 | MitraStar GPT-2741GNAC-N2 with firmware BR_g5.9_1.11(WVK.0)b32 was discovered to contain a remote code execution (RCE) v... |
| CVE-2023-2554 | HIGH | 7.2 | 31.2% | May 5, 2023 | External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0. |
| CVE-2023-2553 | MEDIUM | 5.4 | 0.4% | May 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to 2.2.0. |
| CVE-2023-2552 | HIGH | 8.8 | 0.4% | May 5, 2023 | Cross-Site Request Forgery (CSRF) in GitHub repository unilogies/bumsys prior to 2.1.1. |
| CVE-2023-2551 | HIGH | 8.8 | 1.9% | May 5, 2023 | PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1. |
| CVE-2023-2550 | MEDIUM | 4.8 | 0.5% | May 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.13. |
| CVE-2023-2516 | MEDIUM | 5.4 | 0.6% | May 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.7. |
| CVE-2023-2427 | MEDIUM | 4.8 | 0.5% | May 5, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.13. |
| CVE-2023-32269 | MEDIUM | 6.7 | 0.3% | May 5, 2023 | An issue was discovered in the Linux kernel before 6.1.11. In net/netrom/af_netrom.c, there is a use-after-free because ... |
| CVE-2023-29659 | MEDIUM | 6.5 | 0.9% | May 5, 2023 | A Segmentation fault caused by a floating point exception exists in libheif 1.15.1 using crafted heif images via the hei... |
| CVE-2023-26285 | MEDIUM | 5.9 | 0.9% | May 5, 2023 | IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow a remote attacker to cause a denial of service due to an error p... |
| CVE-2023-30434 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | IBM Storage Scale (IBM Spectrum Scale 5.1.0.0 through 5.1.2.9, 5.1.3.0 through 5.1.6.1 and IBM Elastic Storage Systems 6... |
| CVE-2023-30054 | CRITICAL | 9.8 | 2.1% | May 5, 2023 | TOTOLINK A7100RU V7.4cu.2313_B20191024 has a Command Injection vulnerability. An attacker can obtain a stable root shell... |
| CVE-2023-30053 | CRITICAL | 9.8 | 2.1% | May 5, 2023 | TOTOLINK A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection. |
| CVE-2023-29942 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM... |
| CVE-2023-29941 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir... |
| CVE-2023-29939 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::Ta... |
| CVE-2023-29935 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was... |
| CVE-2023-29934 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect(). |
| CVE-2023-29933 | MEDIUM | 5.5 | 0.2% | May 5, 2023 | llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now