2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1320MEDIUM6.1Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1319MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1318MEDIUM5.4Cross-site Scripting (XSS) - Generic in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1317MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1316MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1315MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-0746MEDIUM6.1The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An ...
CVE-2023-26464HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** When using the Chainsaw or SocketAppender components with Log4j 1.x on JRE less than 1....
CVE-2023-24774CRITICAL9.8Funadmin v3.2.0 was discovered to contain a SQL injection vulnerability via the selectFields parameter at \controller\au...
CVE-2023-1313HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository cockpit-hq/cockpit prior to 2.4.1.
CVE-2023-1015Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-25947MEDIUM5.5The bundle management subsystem within OpenHarmony-v3.1.4 and prior versions has a null pointer reference vulnerability ...
CVE-2023-24465MEDIUM5.5Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a...
CVE-2023-22436HIGH7.8The kernel subsystem function check_permission_for_set_tokenid within OpenHarmony-v3.1.5 and prior versions has an UAF...
CVE-2023-22301HIGH7.5The kernel subsystem hmdfs within OpenHarmony-v3.1.5 and prior versions has an arbitrary memory accessing vulnerabilit...
CVE-2023-1312MEDIUM4.8Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.19.
CVE-2023-0083MEDIUM5.5The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has...
CVE-2023-1311CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Friendly Island Pizza Website and Orderin...
CVE-2023-1310CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Graduate Tracer System 1.0. A...
CVE-2023-1309CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Graduate Tracer System 1.0. Affected by this v...
CVE-2023-1308CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Graduate Tracer System 1.0. Affected is a...
CVE-2023-1091CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Alpata Licensed Wa...
CVE-2023-27119MEDIUM5.5WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild.
CVE-2023-27117HIGH7.8WebAssembly v1.0.29 was discovered to contain a heap overflow via the component component wabt::Node::operator.
CVE-2023-27116MEDIUM5.5WebAssembly v1.0.29 discovered to contain an abort in CWriter::MangleType.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now