2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-29923 | MEDIUM | 5.3 | 9.5% | Apr 19, 2023 | PowerJob V4.3.1 is vulnerable to Insecure Permissions. via the list job interface. |
| CVE-2023-27777 | MEDIUM | 5.4 | 0.4% | Apr 19, 2023 | Cross-site scripting (XSS) vulnerability was discovered in Online Jewelry Shop v1.0 that allows attackers to execute arb... |
| CVE-2023-30463 | HIGH | 7.5 | 0.9% | Apr 19, 2023 | Altran picoTCP through 1.7.0 allows memory corruption (and subsequent denial of service) because of an integer overflow ... |
| CVE-2023-29921 | MEDIUM | 5.3 | 0.5% | Apr 19, 2023 | PowerJob V4.3.1 is vulnerable to Incorrect Access Control via the create app interface. |
| CVE-2023-27776 | MEDIUM | 5.4 | 0.5% | Apr 19, 2023 | A stored cross-site scripting (XSS) vulnerability in /index.php?page=category_list of Online Jewelry Shop v1.0 allows at... |
| CVE-2023-26599 | MEDIUM | 6.1 | 0.4% | Apr 19, 2023 | XSS vulnerability in TripleSign in Tripleplay Platform releases prior to Caveman 3.4.0 allows attackers to inject client... |
| CVE-2023-25760 | HIGH | 8.8 | 0.6% | Apr 19, 2023 | Incorrect Access Control in Tripleplay Platform releases prior to Caveman 3.4.0 allows authenticated user to modify othe... |
| CVE-2023-25759 | MEDIUM | 5.4 | 0.9% | Apr 19, 2023 | OS Command Injection in TripleData Reporting Engine in Tripleplay Platform releases prior to Caveman 3.4.0 allows authen... |
| CVE-2023-22645 | HIGH | 8.8 | 0.5% | Apr 19, 2023 | An Improper Privilege Management vulnerability in SUSE kubewarden allows attackers to read arbitrary secrets if they get... |
| CVE-2023-0317 | MEDIUM | 4.9 | 0.5% | Apr 19, 2023 | Unprotected Alternate Channel vulnerability in debug console of GateManager allows system administrator to obtain sensi... |
| CVE-2023-2170 | MEDIUM | 4.8 | 0.5% | Apr 19, 2023 | The TaxoPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Related Posts functionality in v... |
| CVE-2023-2169 | MEDIUM | 4.8 | 0.5% | Apr 19, 2023 | The TaxoPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Related Posts functionality in v... |
| CVE-2023-2168 | MEDIUM | 4.8 | 0.5% | Apr 19, 2023 | The TaxoPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Suggest Terms Title field in ver... |
| CVE-2023-25620 | MEDIUM | 6.5 | 0.6% | Apr 19, 2023 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause denial of servi... |
| CVE-2023-25619 | HIGH | 7.5 | 0.6% | Apr 19, 2023 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause denial of service... |
| CVE-2023-2137 | HIGH | 8.8 | 1.1% | Apr 19, 2023 | Heap buffer overflow in sqlite in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to potentially exploit... |
| CVE-2023-2136 | CRITICAL | 9.6 | 5.8% | Apr 19, 2023 | Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the rend... |
| CVE-2023-2135 | HIGH | 7.5 | 1.0% | Apr 19, 2023 | Use after free in DevTools in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who convinced a user to en... |
| CVE-2023-2134 | HIGH | 8.8 | 1.1% | Apr 19, 2023 | Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to ... |
| CVE-2023-2133 | HIGH | 8.8 | 1.1% | Apr 19, 2023 | Out of bounds memory access in Service Worker API in Google Chrome prior to 112.0.5615.137 allowed a remote attacker to ... |
| CVE-2023-30605 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-30558 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-30557 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-30556 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-30555 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now