2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26830 | HIGH | 7.2 | 1.1% | Mar 31, 2023 | An unrestricted file upload vulnerability in the administrative portal branding component of Gladinet CentreStack before... |
| CVE-2023-26829 | CRITICAL | 9.8 | 1.2% | Mar 31, 2023 | An authentication bypass vulnerability in the Password Reset component of Gladinet CentreStack before 13.5.9808 allows r... |
| CVE-2023-0432 | CRITICAL | 9 | 1.1% | Mar 31, 2023 | The web configuration service of the affected device contains an authenticated command injection vulnerability. It can ... |
| CVE-2023-0344 | HIGH | 7.5 | 0.6% | Mar 31, 2023 | Akuvox E11 appears to be using a custom version of dropbear SSH server. This server allows an insecure option that by de... |
| CVE-2023-0343 | HIGH | 7.5 | 0.6% | Mar 31, 2023 | Akuvox E11 contains a function that encrypts messages which are then forwarded. The IV vector and the key are static, an... |
| CVE-2023-1777 | MEDIUM | 5.3 | 0.5% | Mar 31, 2023 | Mattermost allows an attacker to request a preview of an existing message when creating a new message via the createPost... |
| CVE-2023-1776 | MEDIUM | 5.4 | 0.4% | Mar 31, 2023 | Boards in Mattermost allows an attacker to upload a malicious SVG image file as an attachment to a card and share it usi... |
| CVE-2023-1775 | MEDIUM | 6.5 | 0.5% | Mar 31, 2023 | When running in a High Availability configuration, Mattermost fails to sanitize some of the user_updated and post_delete... |
| CVE-2023-1774 | MEDIUM | 5.4 | 0.3% | Mar 31, 2023 | When processing an email invite to a private channel on a team, Mattermost fails to validate the inviter's permission to... |
| CVE-2023-1773 | CRITICAL | 9.8 | 1.6% | Mar 31, 2023 | A vulnerability was found in Rockoa 2.3.2. It has been declared as critical. This vulnerability affects unknown code of ... |
| CVE-2023-1772 | MEDIUM | 4.8 | 0.6% | Mar 31, 2023 | A vulnerability was found in DataGear up to 4.5.1. It has been classified as problematic. This affects an unknown part o... |
| CVE-2023-1771 | MEDIUM | 6.1 | 0.5% | Mar 31, 2023 | A vulnerability was found in SourceCodester Grade Point Average GPA Calculator 1.0 and classified as problematic. Affect... |
| CVE-2023-1770 | CRITICAL | 9.8 | 0.7% | Mar 31, 2023 | A vulnerability has been found in SourceCodester Grade Point Average GPA Calculator 1.0 and classified as critical. Affe... |
| CVE-2023-1769 | HIGH | 7.5 | 0.6% | Mar 31, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Grade Point Average GPA Calculator 1.0... |
| CVE-2023-1060 | MEDIUM | 6.1 | 0.4% | Mar 31, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in YKM YKM CRM allows... |
| CVE-2023-1258 | MEDIUM | 5.3 | 3.9% | Mar 31, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ABB Flow-X firmware on Flow-X embedded hardw... |
| CVE-2023-28727 | HIGH | 8.8 | 0.4% | Mar 31, 2023 | Panasonic AiSEG2 versions 2.00J through 2.93A allows adjacent attackers bypass authentication due to mishandling of X-Fo... |
| CVE-2023-28726 | HIGH | 8.8 | 0.8% | Mar 31, 2023 | Panasonic AiSEG2 versions 2.80F through 2.93A allows remote attackers to execute arbitrary OS commands. |
| CVE-2023-28756 | MEDIUM | 5.3 | 2.5% | Mar 31, 2023 | A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles inval... |
| CVE-2023-28755 | MEDIUM | 5.3 | 2.6% | Mar 31, 2023 | A ReDoS issue was discovered in the URI component through 0.12.0 in Ruby through 3.2.1. The URI parser mishandles invali... |
| CVE-2023-1762 | HIGH | 8.8 | 0.9% | Mar 31, 2023 | Improper Privilege Management in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1761 | MEDIUM | 5.4 | 0.5% | Mar 31, 2023 | Cross-site Scripting in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1760 | MEDIUM | 4.8 | 0.5% | Mar 31, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1759 | MEDIUM | 4.8 | 0.5% | Mar 31, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1755 | MEDIUM | 5.4 | 0.6% | Mar 31, 2023 | Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now