2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43989 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in mokumoku chohu mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage... |
| CVE-2023-43988 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in nature fitness saijo mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via l... |
| CVE-2023-47115 | MEDIUM | 5.4 | 1.4% | Jan 23, 2024 | Label Studio is an a popular open source data labeling tool. Versions prior to 1.9.2 have a cross-site scripting (XSS) v... |
| CVE-2023-35836 | MEDIUM | 6.5 | 0.3% | Jan 23, 2024 | An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. An attacker within RF range can obtain a cleartext copy... |
| CVE-2023-52330 | MEDIUM | 6.1 | 2.4% | Jan 23, 2024 | A cross-site scripting vulnerability in Trend Micro Apex Central could allow a remote attacker to execute arbitrary code... |
| CVE-2023-52329 | MEDIUM | 6.1 | 0.9% | Jan 23, 2024 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-52328 | MEDIUM | 6.1 | 2.5% | Jan 23, 2024 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-52327 | MEDIUM | 6.1 | 2.5% | Jan 23, 2024 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-52326 | MEDIUM | 6.1 | 2.5% | Jan 23, 2024 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-41178 | MEDIUM | 6.1 | 1.8% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-41177 | MEDIUM | 6.1 | 0.5% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-41176 | MEDIUM | 6.1 | 1.8% | Jan 23, 2024 | Reflected cross-site scripting (XSS) vulnerabilities in Trend Micro Mobile Security (Enterprise) could allow an exploit ... |
| CVE-2023-38627 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38626 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38625 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-38624 | MEDIUM | 5.4 | 0.4% | Jan 23, 2024 | A post-authenticated server-side request forgery (SSRF) vulnerability in Trend Micro Apex Central 2019 (lower than build... |
| CVE-2023-7238 | MEDIUM | 6.1 | 0.3% | Jan 23, 2024 | A XSS payload can be uploaded as a DICOM study and when a user tries to view the infected study inside the Osimis WebVi... |
| CVE-2023-46889 | MEDIUM | 5.7 | 0.2% | Jan 23, 2024 | Meross MSH30Q 4.5.23 is vulnerable to Cleartext Transmission of Sensitive Information. During the device setup phase, th... |
| CVE-2023-42144 | MEDIUM | 5.5 | 0.1% | Jan 23, 2024 | Cleartext Transmission during initial setup in Shelly TRV 20220811-15234 v.2.1.8 allows a local attacker to obtain the W... |
| CVE-2023-42143 | MEDIUM | 5.4 | 0.2% | Jan 23, 2024 | Missing Integrity Check in Shelly TRV 20220811-152343/v2.1.8@5afc928c allows malicious users to create a backdoor by red... |
| CVE-2023-6573 | MEDIUM | 5.5 | 0.2% | Jan 23, 2024 | HPE OneView may have a missing passphrase during restore. |
| CVE-2023-45889 | MEDIUM | 6.1 | 0.4% | Jan 23, 2024 | A Universal Cross Site Scripting (UXSS) vulnerability in ClassLink OneClick Extension through 10.8 allows remote attacke... |
| CVE-2023-49657 | MEDIUM | 5.4 | 0.8% | Jan 23, 2024 | A stored cross-site scripting (XSS) vulnerability exists in Apache Superset before 3.0.3. An authenticated attacker with... |
| CVE-2023-49783 | MEDIUM | 4.3 | 0.3% | Jan 23, 2024 | Silverstripe Admin provides a basic management interface for the Silverstripe Framework. In versions on the 1.x branch p... |
| CVE-2023-48714 | MEDIUM | 4.3 | 0.4% | Jan 23, 2024 | Silverstripe Framework is the framework that forms the base of the Silverstripe content management system. Prior to vers... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now