2023 CVE Vulnerabilities

31,440 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2346CRITICAL9.8A vulnerability was found in SourceCodester Service Provider Management System 1.0. It has been classified as critical. ...
CVE-2023-2345CRITICAL9.8A vulnerability was found in SourceCodester Service Provider Management System 1.0 and classified as critical. Affected ...
CVE-2023-30349CRITICAL9.8JFinal CMS v5.1.0 was discovered to contain a remote code execution (RCE) vulnerability via the ActionEnter function.
CVE-2023-2344CRITICAL9.8A vulnerability has been found in SourceCodester Service Provider Management System 1.0 and classified as critical. Affe...
CVE-2023-2343MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2342MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2341MEDIUM6.1Cross-site Scripting (XSS) - Generic in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-24966MEDIUM6.1IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to e...
CVE-2023-30444MEDIUM6.5IBM Watson Machine Learning on Cloud Pak for Data 4.0 and 4.5 is vulnerable to server-side request forgery (SSRF). This ...
CVE-2023-2340MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-29255HIGH7.5IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of serv...
CVE-2023-2339MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2338HIGH8.8SQL Injection in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2336MEDIUM6.5Path Traversal in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2331HIGH7.8Unquoted service Path or Element vulnerability in 42Gears Surelock Windows SureLock Service (NixService.Exe) on Windows ...
CVE-2023-2328MEDIUM5.4Cross-site Scripting (XSS) - Generic in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2327MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-1778CRITICAL9.8This vulnerability exists in GajShield Data Security Firewall firmware versions prior to v4.28 (except v4.21) due to ins...
CVE-2023-2323MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-2322MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21.
CVE-2023-28770HIGH7.5The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmwa...
CVE-2023-28769CRITICAL9.8The buffer overflow vulnerability in the library “libclinkc.so” of the web server “zhttpd” in Zyxel DX5401-B0 firmware v...
CVE-2023-31290MEDIUM5.9Trust Wallet Core before 3.1.1, as used in the Trust Wallet browser extension before 0.0.183, allows theft of funds beca...
CVE-2023-31287HIGH7.8An issue was discovered in Serenity Serene (and StartSharp) before 6.7.0. Password reset links are sent by email. A link...
CVE-2023-31286MEDIUM5.3An issue was discovered in Serenity Serene (and StartSharp) before 6.7.0. When a password reset request occurs, the serv...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now