2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-26203HIGH7.8A use of hard-coded credentials vulnerability [CWE-798] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9...
CVE-2023-22640HIGH8.8A out-of-bounds write in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.10, FortiOS ver...
CVE-2023-22637CRITICAL9An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiN...
CVE-2023-1178MEDIUM5.7An issue has been discovered in GitLab CE/EE affecting all versions from 8.6 before 15.9.6, all versions starting from 1...
CVE-2023-0805HIGH8.1An issue has been discovered in GitLab EE affecting all versions starting from 15.2 before 15.9.6, all versions starting...
CVE-2023-0756HIGH8An issue has been discovered in GitLab affecting all versions before 15.9.6, all versions starting from 15.10 before 15....
CVE-2023-30205MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in DouPHP v1.7 allows attackers to execute arbitrary web scripts or HT...
CVE-2023-30204CRITICAL9.8Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the judge_id parameter at /ph...
CVE-2023-2069MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 10.0 before 12.9.8, all versions starting fr...
CVE-2023-1965MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 14.2 before 15.9.6, all versions starting...
CVE-2023-1836MEDIUM5.4A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 before 15.9.6, all v...
CVE-2023-1265MEDIUM4.5An issue has been discovered in GitLab affecting all versions starting from 11.9 before 15.9.6, all versions starting fr...
CVE-2023-1204MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.1 before 15.10.8, all versions star...
CVE-2023-0485MEDIUM6.5An issue has been discovered in GitLab affecting all versions starting from 13.11 before 15.8.5, all versions starting f...
CVE-2023-0155MEDIUM5.4An issue has been discovered in GitLab CE/EE affecting all versions before 15.8.5, 15.9.4, 15.10.1. Open redirects was p...
CVE-2023-30300MEDIUM5.5An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.
CVE-2023-24744MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Rediker Software AdminPlus 6.1.91.00 allows remote attackers to run arbitrar...
CVE-2023-25827MEDIUM6.1 Due to insufficient validation of parameters reflected in error messages by the legacy HTTP query API and the logging e...
CVE-2023-25826CRITICAL9.8Due to insufficient validation of parameters passed to the legacy HTTP query API, it is possible to inject crafted OS co...
CVE-2023-26017MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in BlueGlass Jobs for WordPress plugin <= 2.5.10.2 versio...
CVE-2023-25967HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in PeepSo Community by PeepSo plugin <= 6.0.2.0 versions.
CVE-2023-23881MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in GreenTreeLabs Circles Gallery plugin <= 1.0.10 version...
CVE-2023-23875MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Himanshu Bing Site Verification plugin using Meta Tag ...
CVE-2023-23830MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team ProfilePress plugin <= 4.5.4 ...
CVE-2023-29240MEDIUM5.4An authenticated attacker granted a Viewer or Auditor role on a BIG-IQ can upload arbitrary files using an undisclosed i...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now