2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0400 | HIGH | 8.2 | 0.4% | Feb 2, 2023 | The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local use... |
| CVE-2023-25015 | MEDIUM | 6.5 | 0.4% | Feb 2, 2023 | Clockwork Web before 0.1.2, when Rails before 5.2 is used, allows CSRF. |
| CVE-2023-25014 | HIGH | 7.5 | 0.5% | Feb 2, 2023 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi... |
| CVE-2023-25013 | HIGH | 7.5 | 0.5% | Feb 2, 2023 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi... |
| CVE-2023-25012 | MEDIUM | 4.6 | 0.8% | Feb 2, 2023 | The Linux kernel through 6.1.9 has a Use-After-Free in bigben_remove in drivers/hid/hid-bigbenff.c via a crafted USB dev... |
| CVE-2023-0599 | MEDIUM | 4.8 | 0.4% | Feb 1, 2023 | Rapid7 Metasploit Pro versions 4.21.2 and lower suffer from a stored cross site scripting vulnerability, due to a lack o... |
| CVE-2023-23751 | MEDIUM | 4.3 | 0.4% | Feb 1, 2023 | An issue was discovered in Joomla! 4.0.0 through 4.2.4. A missing ACL check allows non super-admin users to access com_a... |
| CVE-2023-23750 | MEDIUM | 6.3 | 0.2% | Feb 1, 2023 | An issue was discovered in Joomla! 4.0.0 through 4.2.6. A missing token check causes a CSRF vulnerability in the handlin... |
| CVE-2023-23078 | MEDIUM | 6.1 | 2.8% | Feb 1, 2023 | Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via the comment field when changing th... |
| CVE-2023-23077 | MEDIUM | 6.1 | 2.8% | Feb 1, 2023 | Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 13 via the comment field when adding a ne... |
| CVE-2023-23076 | CRITICAL | 9.8 | 74.3% | Feb 1, 2023 | OS Command injection vulnerability in Support Center Plus 11 via Executor in Action when creating new schedules. |
| CVE-2023-23075 | MEDIUM | 6.1 | 2.6% | Feb 1, 2023 | Cross Site Scripting (XSS) vulnerability in Zoho Asset Explorer 6.9 via the credential name when creating a new Assets W... |
| CVE-2023-23074 | MEDIUM | 6.1 | 83.6% | Feb 1, 2023 | Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via embedding videos in the language c... |
| CVE-2023-23073 | MEDIUM | 6.1 | 2.8% | Feb 1, 2023 | Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via PO in the purchase component. |
| CVE-2023-22287 | — | — | — | Feb 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2023-22284 | — | — | — | Feb 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2023-0619 | MEDIUM | 6.5 | 0.7% | Feb 1, 2023 | The Kraken.io Image Optimizer plugin for WordPress is vulnerable to authorization bypass due to a missing capability che... |
| CVE-2023-23969 | HIGH | 7.5 | 47.1% | Feb 1, 2023 | In Django 3.2 before 3.2.17, 4.0 before 4.0.9, and 4.1 before 4.1.6, the parsed values of Accept-Language headers are ca... |
| CVE-2023-23469 | LOW | 3.3 | 0.2% | Feb 1, 2023 | IBM ICP4A - Automation Decision Services 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1... |
| CVE-2023-22501 | CRITICAL | 9.1 | 16.0% | Feb 1, 2023 | An authentication vulnerability was discovered in Jira Service Management Server and Data Center which allows an attacke... |
| CVE-2023-23555 | HIGH | 7.5 | 0.6% | Feb 1, 2023 | On BIG-IP Virtual Edition versions 15.1x beginning in 15.1.4 to before 15.1.8 and 14.1.x beginning in 14.1.5 to before 1... |
| CVE-2023-23552 | HIGH | 7.5 | 1.5% | Feb 1, 2023 | On versions 17.0.x before 17.0.0.2, 16.1.x before 16.1.3.3, 15.1.0 before 15.1.8, 14.1.x before 14.1.5.3, and all versio... |
| CVE-2023-22842 | HIGH | 7.5 | 0.6% | Feb 1, 2023 | On BIG-IP versions 16.1.x before 16.1.3.3, 15.1.x before 15.1.8.1, 14.1.x before 14.1.5.3, and all versions of 13.1.x, w... |
| CVE-2023-22839 | HIGH | 7.5 | 0.6% | Feb 1, 2023 | On BIG-IP versions 17.0.x before 17.0.0.2, 16.1.x before 16.1.3.3, 15.1.x before 15.1.8.1, 14.1.x before 14.1.5.3, and a... |
| CVE-2023-22664 | HIGH | 7.5 | 0.6% | Feb 1, 2023 | On BIG-IP versions 17.0.x before 17.0.0.2 and 16.1.x before 16.1.3.3, and BIG-IP SPK starting in version 1.6.0, when a c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now