2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22369 | — | — | — | Feb 10, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-25011. Reason: This candidate is a duplicate of ... |
| CVE-2023-23286 | MEDIUM | 6.1 | 2.6% | Feb 10, 2023 | Cross Site Scripting (XSS) vulnerability in Provide server 14.4 allows attackers to execute arbitrary code through the s... |
| CVE-2023-0771 | HIGH | 8.8 | 0.7% | Feb 10, 2023 | SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop. |
| CVE-2023-24690 | MEDIUM | 5.4 | 0.5% | Feb 9, 2023 | ChurchCRM 4.5.3 and below was discovered to contain a stored cross-site scripting (XSS) vulnerability at /api/public/reg... |
| CVE-2023-24686 | MEDIUM | 4.8 | 0.7% | Feb 9, 2023 | An issue in the CSV Import function of ChurchCRM v4.5.3 and below allows attackers to execute arbitrary code via importi... |
| CVE-2023-24685 | HIGH | 7.2 | 1.0% | Feb 9, 2023 | ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Eve... |
| CVE-2023-24684 | HIGH | 7.2 | 1.0% | Feb 9, 2023 | ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the EID parameter at GetText.php. |
| CVE-2023-23592 | HIGH | 7.5 | 0.8% | Feb 9, 2023 | WALLIX Access Manager 3.x through 4.0.x allows a remote attacker to access sensitive information. |
| CVE-2023-0770 | HIGH | 7.8 | 0.4% | Feb 9, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2. |
| CVE-2023-23631 | HIGH | 7.5 | 0.9% | Feb 9, 2023 | github.com/ipfs/go-unixfsnode is an ADL IPLD prime node that wraps go-codec-dagpb's implementation of protobuf to enable... |
| CVE-2023-23626 | HIGH | 7.5 | 0.9% | Feb 9, 2023 | go-bitfield is a simple bitfield package for the go language aiming to be more performant that the standard library. Whe... |
| CVE-2023-23625 | HIGH | 7.5 | 0.7% | Feb 9, 2023 | go-unixfs is an implementation of a unix-like filesystem on top of an ipld merkledag. Trying to read malformed HAMT shar... |
| CVE-2023-24689 | MEDIUM | 4.3 | 0.7% | Feb 9, 2023 | An issue in Mojoportal v2.7.0.0 and below allows an authenticated attacker to list all css files inside the root path of... |
| CVE-2023-24688 | MEDIUM | 5.3 | 0.7% | Feb 9, 2023 | An issue in Mojoportal v2.7.0.0 allows an unauthenticated attacker to register a new user even if the Allow User Registr... |
| CVE-2023-24687 | MEDIUM | 5.4 | 0.6% | Feb 9, 2023 | Mojoportal v2.7.0.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Company Info Sett... |
| CVE-2023-24323 | HIGH | 8.8 | 1.2% | Feb 9, 2023 | Mojoportal v2.7 was discovered to contain an authenticated XML external entity (XXE) injection vulnerability. |
| CVE-2023-24322 | MEDIUM | 6.1 | 31.7% | Feb 9, 2023 | A reflected cross-site scripting (XSS) vulnerability in the FileDialog.aspx component of mojoPortal v2.7.0.0 allows atta... |
| CVE-2023-23912 | HIGH | 8.8 | 0.9% | Feb 9, 2023 | A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.5... |
| CVE-2023-22799 | HIGH | 7.5 | 1.0% | Feb 9, 2023 | A ReDoS based DoS vulnerability in the GlobalID <1.0.1 which could allow an attacker supplying a carefully crafted input... |
| CVE-2023-22798 | MEDIUM | 6.1 | 0.5% | Feb 9, 2023 | Prior to commit 51867e0d15a6d7f80d5b714fd0e9976b9c160bb0, https://github.com/brave/adblock-lists removed redirect interc... |
| CVE-2023-22797 | MEDIUM | 6.1 | 0.6% | Feb 9, 2023 | An open redirect vulnerability is fixed in Rails 7.0.4.1 with the new protection against open redirects from calling red... |
| CVE-2023-22796 | HIGH | 7.5 | 1.7% | Feb 9, 2023 | A regular expression based DoS vulnerability in Active Support <6.1.7.1 and <7.0.4.1. A specially crafted string passed ... |
| CVE-2023-22795 | HIGH | 7.5 | 2.3% | Feb 9, 2023 | A regular expression based DoS vulnerability in Action Dispatch <6.1.7.1 and <7.0.4.1 related to the If-None-Match heade... |
| CVE-2023-22794 | HIGH | 8.8 | 2.2% | Feb 9, 2023 | A vulnerability in ActiveRecord <6.0.6.1, v6.1.7.1 and v7.0.4.1 related to the sanitization of comments. If malicious us... |
| CVE-2023-22792 | HIGH | 7.5 | 1.7% | Feb 9, 2023 | A regular expression based DoS vulnerability in Action Dispatch <6.0.6.1,< 6.1.7.1, and <7.0.4.1. Specially crafted cook... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now