2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30853 | MEDIUM | 6.5 | 0.3% | Apr 28, 2023 | Gradle Build Action allows users to execute a Gradle Build in their GitHub Actions workflow. A vulnerability impacts Git... |
| CVE-2023-2378 | HIGH | 7.2 | 4.3% | Apr 28, 2023 | A flaw has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown function of the component W... |
| CVE-2023-2377 | HIGH | 7.2 | 4.3% | Apr 28, 2023 | A vulnerability was detected in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. The impacted element is an unknown function ... |
| CVE-2023-2376 | HIGH | 7.2 | 4.3% | Apr 28, 2023 | A security vulnerability has been detected in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. The affected element is an unk... |
| CVE-2023-27972 | CRITICAL | 9.8 | 1.5% | Apr 28, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Remote Code Execution. |
| CVE-2023-27971 | CRITICAL | 9.8 | 0.9% | Apr 28, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Elevation of Privilege. |
| CVE-2023-2375 | HIGH | 7.2 | 6.6% | Apr 28, 2023 | A weakness has been identified in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. Impacted is an unknown function of the com... |
| CVE-2023-2374 | HIGH | 7.2 | 4.5% | Apr 28, 2023 | A security flaw has been discovered in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This issue affects some unknown proce... |
| CVE-2023-29815 | HIGH | 8.8 | 0.3% | Apr 28, 2023 | mccms v2.6.3 is vulnerable to Cross Site Request Forgery (CSRF). |
| CVE-2023-1477 | HIGH | 8.8 | 0.6% | Apr 28, 2023 | Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension allows Authentication Abuse.This issue af... |
| CVE-2023-0834 | CRITICAL | 9.8 | 0.3% | Apr 28, 2023 | Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS allows Privilege E... |
| CVE-2023-30183 | — | — | — | Apr 28, 2023 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-30349. Reason: This record is a reservation duplicate ... |
| CVE-2023-30125 | MEDIUM | 6.1 | 0.4% | Apr 28, 2023 | EyouCms V1.6.1-UTF8-sp1 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2023-30123 | MEDIUM | 5.4 | 0.4% | Apr 28, 2023 | wuzhicms v4.1.0 is vulnerable to Cross Site Scripting (XSS) in the Member Center, Account Settings. |
| CVE-2023-2373 | HIGH | 7.2 | 4.3% | Apr 28, 2023 | A vulnerability was identified in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This vulnerability affects unknown code of... |
| CVE-2023-2372 | MEDIUM | 4.8 | 0.6% | Apr 28, 2023 | A vulnerability, which was classified as problematic, has been found in SourceCodester Online DJ Management System 1.0. ... |
| CVE-2023-2371 | CRITICAL | 9.8 | 0.8% | Apr 28, 2023 | A vulnerability classified as critical was found in SourceCodester Online DJ Management System 1.0. Affected by this vul... |
| CVE-2023-2370 | CRITICAL | 9.8 | 0.9% | Apr 28, 2023 | A vulnerability classified as critical has been found in SourceCodester Online DJ Management System 1.0. Affected is an ... |
| CVE-2023-28821 | MEDIUM | 5.3 | 0.7% | Apr 28, 2023 | Concrete CMS (previously concrete5) before 9.1 did not have a rate limit for password resets. |
| CVE-2023-28820 | MEDIUM | 5.4 | 0.4% | Apr 28, 2023 | Concrete CMS (previously concrete5) before 9.1 is vulnerable to stored XSS in RSS Displayer via the href attribute becau... |
| CVE-2023-28819 | MEDIUM | 5.4 | 0.6% | Apr 28, 2023 | Concrete CMS (previously concrete5) versions 8.5.12 and below, 9.0.0 through 9.0.2 is vulnerable to Stored XSS in upload... |
| CVE-2023-28477 | MEDIUM | 5.4 | 0.6% | Apr 28, 2023 | Concrete CMS (previously concrete5) versions 8.5.12 and below, and 9.0 through 9.1.3 is vulnerable to stored XSS on API ... |
| CVE-2023-28476 | MEDIUM | 5.4 | 0.5% | Apr 28, 2023 | Concrete CMS (previously concrete5) in versions 9.0 through 9.1.3 is vulnerable to Stored XSS on Tags on uploaded files. |
| CVE-2023-28475 | MEDIUM | 6.1 | 0.6% | Apr 28, 2023 | Concrete CMS (previously concrete5) versions 8.5.12 and below, and versions 9.0 through 9.1.3 is vulnerable to Reflected... |
| CVE-2023-28474 | MEDIUM | 5.4 | 0.6% | Apr 28, 2023 | Concrete CMS (previously concrete5) in versions 9.0 through 9.1.3 is vulnerable to Stored XSS on Saved Presets on search... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now