2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1289 | MEDIUM | 5.5 | 0.9% | Mar 23, 2023 | A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation ... |
| CVE-2023-1606 | CRITICAL | 9.8 | 0.9% | Mar 23, 2023 | A vulnerability was found in novel-plus 3.6.2 and classified as critical. Affected by this issue is some unknown functio... |
| CVE-2023-1605 | HIGH | 7.5 | 1.0% | Mar 23, 2023 | Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6. |
| CVE-2023-27094 | HIGH | 8.8 | 0.6% | Mar 23, 2023 | An issue found in OpenGoofy Hippo4j v.1.4.3 allows attackers to escalate privileges via the ThreadPoolController of the ... |
| CVE-2023-26008 | MEDIUM | 4.8 | 0.4% | Mar 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ajay D'Souza Top 10 – Popular posts plugin for WordPre... |
| CVE-2023-25992 | MEDIUM | 4.8 | 0.4% | Mar 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM Answers plugin <= 3.1.9 vers... |
| CVE-2023-25456 | MEDIUM | 4.8 | 0.4% | Mar 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Klaviyo, Inc. Klaviyo plugin <= 3.0.7 versions. |
| CVE-2023-23707 | MEDIUM | 5.4 | 0.4% | Mar 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'), Unrestricted Upload of File with D... |
| CVE-2023-20113 | HIGH | 8.1 | 0.3% | Mar 23, 2023 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, r... |
| CVE-2023-20112 | MEDIUM | 6.5 | 0.3% | Mar 23, 2023 | A vulnerability in Cisco access point (AP) software could allow an unauthenticated, adjacent attacker to cause a denial ... |
| CVE-2023-20107 | HIGH | 7.5 | 0.7% | Mar 23, 2023 | A vulnerability in the deterministic random bit generator (DRBG), also known as pseudorandom number generator (PRNG), in... |
| CVE-2023-20100 | MEDIUM | 6.8 | 0.8% | Mar 23, 2023 | A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPW... |
| CVE-2023-20097 | MEDIUM | 6.7 | 0.2% | Mar 23, 2023 | A vulnerability in Cisco access points (AP) software could allow an authenticated, local attacker to inject arbitrary co... |
| CVE-2023-20082 | MEDIUM | 6.8 | 0.4% | Mar 23, 2023 | A vulnerability in Cisco IOS XE Software for Cisco Catalyst 9300 Series Switches could allow an authenticated, local att... |
| CVE-2023-20081 | MEDIUM | 5.9 | 0.7% | Mar 23, 2023 | A vulnerability in the IPv6 DHCP (DHCPv6) client module of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firep... |
| CVE-2023-20080 | HIGH | 7.5 | 1.0% | Mar 23, 2023 | A vulnerability in the IPv6 DHCP version 6 (DHCPv6) relay and server features of Cisco IOS and IOS XE Software could all... |
| CVE-2023-20072 | HIGH | 8.6 | 1.0% | Mar 23, 2023 | A vulnerability in the fragmentation handling code of tunnel protocol packets in Cisco IOS XE Software could allow an un... |
| CVE-2023-20067 | MEDIUM | 6.5 | 0.3% | Mar 23, 2023 | A vulnerability in the HTTP-based client profiling feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) ... |
| CVE-2023-20066 | MEDIUM | 6.5 | 1.7% | Mar 23, 2023 | A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform a direct... |
| CVE-2023-20065 | HIGH | 7.8 | 0.2% | Mar 23, 2023 | A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, lo... |
| CVE-2023-20059 | MEDIUM | 6.5 | 0.4% | Mar 23, 2023 | A vulnerability in the implementation of the Cisco Network Plug-and-Play (PnP) agent of Cisco DNA Center could allow an ... |
| CVE-2023-20056 | MEDIUM | 5.5 | 0.3% | Mar 23, 2023 | A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker t... |
| CVE-2023-20055 | HIGH | 8.8 | 0.7% | Mar 23, 2023 | A vulnerability in the management API of Cisco DNA Center could allow an authenticated, remote attacker to elevate privi... |
| CVE-2023-20035 | HIGH | 7.8 | 0.2% | Mar 23, 2023 | A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbit... |
| CVE-2023-20029 | HIGH | 7.8 | 0.2% | Mar 23, 2023 | A vulnerability in the Meraki onboarding feature of Cisco IOS XE Software could allow an authenticated, local attacker t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now