2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-35006MEDIUM5.4IBM Security QRadar EDR 3.12 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which ...
CVE-2023-33860MEDIUM5.3IBM Security QRadar EDR 3.12 does not set the secure attribute on authorization tokens or session cookies. Attackers may...
CVE-2023-33859MEDIUM5.3IBM Security QRadar EDR 3.12 could disclose sensitive information due to an observable login response discrepancy. IBM ...
CVE-2023-6813MEDIUM6.1The Login by Auth0 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘wle’ parameter in all v...
CVE-2023-32472HIGH8.2Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal...
CVE-2023-32467HIGH8.2Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal...
CVE-2023-7062HIGH8.8The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to Directory Traversal in all versions up to, an...
CVE-2023-7061HIGH8.8The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to,...
CVE-2023-21114HIGH7.8In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalati...
CVE-2023-21113HIGH7.8In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalati...
CVE-2023-50807HIGH8.1A vulnerability was discovered in Samsung Wearable Processor and Modems with versions Exynos 9110, Exynos Modem 5123, Ex...
CVE-2023-50806HIGH8.4A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Ex...
CVE-2023-50805HIGH8.1A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Ex...
CVE-2023-48194CRITICAL9.8Vulnerability in Tenda AC8v4 .V16.03.34.09 due to sscanf and the last digit of s8 being overwritten with \x0. After exec...
CVE-2023-50181MEDIUM6.5An improper access control vulnerability [CWE-284] in Fortinet FortiADC version 7.4.0 through 7.4.1 and before 7.2.4 al...
CVE-2023-50179MEDIUM5.9An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2 all versions, 7.1 all versions, 7.0 al...
CVE-2023-50178HIGH7.4An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2.0 through 7.2.3, 7.1 all versions, 7.0...
CVE-2023-40702HIGH7.7PingOne MFA Integration Kit contains a vulnerability where the skipMFA action can be configured such that user authentic...
CVE-2023-40356HIGH8.7PingOne MFA Integration Kit contains a vulnerability related to the Prompt Users to Set Up MFA configuration. Under cert...
CVE-2023-39328MEDIUM5.5A vulnerability was found in OpenJPEG similar to CVE-2019-6988. This flaw allows an attacker to bypass existing protecti...
CVE-2023-52891MEDIUM5.3A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (A...
CVE-2023-52238MEDIUM4.3A vulnerability has been identified in RUGGEDCOM RST2228 (All versions < V5.9.0), RUGGEDCOM RST2228P (All versions < V5....
CVE-2023-52237HIGH7.7A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80...
CVE-2023-32737HIGH7A vulnerability has been identified in SIMATIC STEP 7 Safety V18 (All versions < V18 Update 2). Affected applications do...
CVE-2023-32735HIGH7A vulnerability has been identified in SIMATIC STEP 7 Safety V16 (All versions < V16 Update 7), SIMATIC STEP 7 Safety V1...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now