2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0794MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0793HIGH8.8Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0792MEDIUM5.4Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0791MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0790HIGH8.8Uncaught Exception in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0789CRITICAL9.8Command Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0788CRITICAL9.8Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0787MEDIUM5.4Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0786MEDIUM4.8Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0785LOW3.7A vulnerability classified as problematic was found in SourceCodester Best Online News Portal 1.0. Affected by this vuln...
CVE-2023-0784CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Best Online News Portal 1.0. Affected is an unkn...
CVE-2023-20076HIGH8.8A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execut...
CVE-2023-0661MEDIUM6.5Improper access control in Devolutions Server allows an authenticated user to access unauthorized sensitive data.
CVE-2023-0783CRITICAL9.8A vulnerability was found in EcShop 4.1.5. It has been classified as critical. This affects an unknown part of the file ...
CVE-2023-0782CRITICAL9.8A vulnerability was found in Tenda AC23 16.03.07.45 and classified as critical. Affected by this issue is the function f...
CVE-2023-0127HIGH7.8A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an...
CVE-2023-0781CRITICAL9.8A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulner...
CVE-2023-0780MEDIUM5.4Improper Restriction of Rendered UI Layers or Frames in GitHub repository cockpit-hq/cockpit prior to 2.3.9-dev.
CVE-2023-25562CRITICAL9.8DataHub is an open-source metadata platform. In versions of DataHub prior to 0.8.45 Session cookies are only cleared on ...
CVE-2023-25561CRITICAL9.8DataHub is an open-source metadata platform. In the event a system is using Java Authentication and Authorization Servic...
CVE-2023-25560CRITICAL9.8DataHub is an open-source metadata platform. The AuthServiceClient which is responsible for creation of new accounts, ve...
CVE-2023-25559HIGH8.1DataHub is an open-source metadata platform. When not using authentication for the metadata service, which is the defaul...
CVE-2023-25558HIGH8.8DataHub is an open-source metadata platform. When the DataHub frontend is configured to authenticate via SSO, it will le...
CVE-2023-25557CRITICAL9.1DataHub is an open-source metadata platform. The DataHub frontend acts as a proxy able to forward any REST or GraphQL re...
CVE-2023-0776CRITICAL10Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now