2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-26517MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Jeff Starr Dashboard Widgets Suite plugin <= 3.2.1 ver...
CVE-2023-24957MEDIUM5.4IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3, 20.0.0.1, 20.0.0.2, 21.0.2,...
CVE-2023-29963HIGH7.2S-CMS v5.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the component /admin...
CVE-2023-29354MEDIUM4.7Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2023-29350HIGH7.5Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-30065HIGH8.8MitraStar GPT-2741GNAC-N2 with firmware BR_g5.9_1.11(WVK.0)b32 was discovered to contain a remote code execution (RCE) v...
CVE-2023-2554HIGH7.2External Control of File Name or Path in GitHub repository unilogies/bumsys prior to 2.2.0.
CVE-2023-2553MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to 2.2.0.
CVE-2023-2552HIGH8.8Cross-Site Request Forgery (CSRF) in GitHub repository unilogies/bumsys prior to 2.1.1.
CVE-2023-2551HIGH8.8PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.
CVE-2023-2550MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.13.
CVE-2023-2516MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.7.
CVE-2023-2427MEDIUM4.8Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.13.
CVE-2023-32269MEDIUM6.7An issue was discovered in the Linux kernel before 6.1.11. In net/netrom/af_netrom.c, there is a use-after-free because ...
CVE-2023-29659MEDIUM6.5A Segmentation fault caused by a floating point exception exists in libheif 1.15.1 using crafted heif images via the hei...
CVE-2023-26285MEDIUM5.9IBM MQ 9.2 CD, 9.2 LTS, 9.3 CD, and 9.3 LTS could allow a remote attacker to cause a denial of service due to an error p...
CVE-2023-30434MEDIUM5.5IBM Storage Scale (IBM Spectrum Scale 5.1.0.0 through 5.1.2.9, 5.1.3.0 through 5.1.6.1 and IBM Elastic Storage Systems 6...
CVE-2023-30054CRITICAL9.8TOTOLINK A7100RU V7.4cu.2313_B20191024 has a Command Injection vulnerability. An attacker can obtain a stable root shell...
CVE-2023-30053CRITICAL9.8TOTOLINK A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection.
CVE-2023-29942MEDIUM5.5llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM...
CVE-2023-29941MEDIUM5.5llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir...
CVE-2023-29939MEDIUM5.5llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::Ta...
CVE-2023-29935MEDIUM5.5llvm-project commit a0138390 was discovered to contain an assertion failure at !replacements.count(op) && "operation was...
CVE-2023-29934MEDIUM5.5llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect().
CVE-2023-29933MEDIUM5.5llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now