2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1289MEDIUM5.5A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation ...
CVE-2023-1606CRITICAL9.8A vulnerability was found in novel-plus 3.6.2 and classified as critical. Affected by this issue is some unknown functio...
CVE-2023-1605HIGH7.5Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6.
CVE-2023-27094HIGH8.8An issue found in OpenGoofy Hippo4j v.1.4.3 allows attackers to escalate privileges via the ThreadPoolController of the ...
CVE-2023-26008MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ajay D'Souza Top 10 – Popular posts plugin for WordPre...
CVE-2023-25992MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM Answers plugin <= 3.1.9 vers...
CVE-2023-25456MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Klaviyo, Inc. Klaviyo plugin <= 3.0.7 versions.
CVE-2023-23707MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'), Unrestricted Upload of File with D...
CVE-2023-20113HIGH8.1A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, r...
CVE-2023-20112MEDIUM6.5A vulnerability in Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to cause a denial ...
CVE-2023-20107HIGH7.5A vulnerability in the deterministic random bit generator (DRBG), also known as pseudorandom number generator (PRNG), in...
CVE-2023-20100MEDIUM6.8A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPW...
CVE-2023-20097MEDIUM6.7A vulnerability in Cisco access points (AP) software could allow an authenticated, local attacker to inject arbitrary co...
CVE-2023-20082MEDIUM6.8A vulnerability in Cisco IOS XE Software for Cisco Catalyst 9300 Series Switches could allow an authenticated, local att...
CVE-2023-20081MEDIUM5.9A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firep...
CVE-2023-20080HIGH7.5A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could all...
CVE-2023-20072HIGH8.6A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Software could allow an un...
CVE-2023-20067MEDIUM6.5A vulnerability in the HTTP-based client profiling feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) ...
CVE-2023-20066MEDIUM6.5A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform a direct...
CVE-2023-20065HIGH7.8A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, lo...
CVE-2023-20059MEDIUM6.5A vulnerability in the implementation of the Cisco Network Plug-and-Play (PnP) agent of Cisco DNA Center could allow an ...
CVE-2023-20056MEDIUM5.5A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker t...
CVE-2023-20055HIGH8.8A vulnerability in the management API of Cisco DNA Center could allow an authenticated, remote attacker to elevate privi...
CVE-2023-20035HIGH7.8A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbit...
CVE-2023-20029HIGH7.8A vulnerability in the Meraki onboarding feature of Cisco IOS XE Software could allow an authenticated, local attacker t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now