2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35006 | MEDIUM | 5.4 | 0.3% | Jul 10, 2024 | IBM Security QRadar EDR 3.12 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which ... |
| CVE-2023-33860 | MEDIUM | 5.3 | 0.2% | Jul 10, 2024 | IBM Security QRadar EDR 3.12 does not set the secure attribute on authorization tokens or session cookies. Attackers may... |
| CVE-2023-33859 | MEDIUM | 5.3 | 0.4% | Jul 10, 2024 | IBM Security QRadar EDR 3.12 could disclose sensitive information due to an observable login response discrepancy. IBM ... |
| CVE-2023-6813 | MEDIUM | 6.1 | 0.4% | Jul 10, 2024 | The Login by Auth0 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘wle’ parameter in all v... |
| CVE-2023-32472 | HIGH | 8.2 | 0.2% | Jul 10, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal... |
| CVE-2023-32467 | HIGH | 8.2 | 0.2% | Jul 10, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal... |
| CVE-2023-7062 | HIGH | 8.8 | 0.7% | Jul 10, 2024 | The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to Directory Traversal in all versions up to, an... |
| CVE-2023-7061 | HIGH | 8.8 | 0.8% | Jul 10, 2024 | The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to,... |
| CVE-2023-21114 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalati... |
| CVE-2023-21113 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalati... |
| CVE-2023-50807 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A vulnerability was discovered in Samsung Wearable Processor and Modems with versions Exynos 9110, Exynos Modem 5123, Ex... |
| CVE-2023-50806 | HIGH | 8.4 | 0.2% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Ex... |
| CVE-2023-50805 | HIGH | 8.1 | 0.4% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Ex... |
| CVE-2023-48194 | CRITICAL | 9.8 | 0.8% | Jul 9, 2024 | Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After exec... |
| CVE-2023-50181 | MEDIUM | 6.5 | 0.3% | Jul 9, 2024 | An improper access control vulnerability [CWE-284] in Fortinet FortiADC version 7.4.0 through 7.4.1 and before 7.2.4 al... |
| CVE-2023-50179 | MEDIUM | 5.9 | 0.2% | Jul 9, 2024 | An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2 all versions, 7.1 all versions, 7.0 al... |
| CVE-2023-50178 | HIGH | 7.4 | 0.2% | Jul 9, 2024 | An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2.0 through 7.2.3, 7.1 all versions, 7.0... |
| CVE-2023-40702 | HIGH | 7.7 | 0.4% | Jul 9, 2024 | PingOne MFA Integration Kit contains a vulnerability where the skipMFA action can be configured such that user authentic... |
| CVE-2023-40356 | HIGH | 8.7 | 0.4% | Jul 9, 2024 | PingOne MFA Integration Kit contains a vulnerability related to the Prompt Users to Set Up MFA configuration. Under cert... |
| CVE-2023-39328 | MEDIUM | 5.5 | 0.2% | Jul 9, 2024 | A vulnerability was found in OpenJPEG similar to CVE-2019-6988. This flaw allows an attacker to bypass existing protecti... |
| CVE-2023-52891 | MEDIUM | 5.3 | 0.5% | Jul 9, 2024 | A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (A... |
| CVE-2023-52238 | MEDIUM | 4.3 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in RUGGEDCOM RST2228 (All versions < V5.9.0), RUGGEDCOM RST2228P (All versions < V5.... |
| CVE-2023-52237 | HIGH | 7.7 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80... |
| CVE-2023-32737 | HIGH | 7 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in SIMATIC STEP 7 Safety V18 (All versions < V18 Update 2). Affected applications do... |
| CVE-2023-32735 | HIGH | 7 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in SIMATIC STEP 7 Safety V16 (All versions < V16 Update 7), SIMATIC STEP 7 Safety V1... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now