2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22574 | HIGH | 8.1 | 0.7% | Feb 1, 2023 | Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in pl... |
| CVE-2023-22573 | MEDIUM | 5.5 | 0.2% | Feb 1, 2023 | Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloud... |
| CVE-2023-0613 | HIGH | 7.5 | 0.9% | Feb 1, 2023 | A vulnerability has been found in TRENDnet TEW-811DRU 1.0.10.0 and classified as critical. Affected by this vulnerabilit... |
| CVE-2023-0612 | HIGH | 7.5 | 0.9% | Feb 1, 2023 | A vulnerability, which was classified as critical, was found in TRENDnet TEW-811DRU 1.0.10.0. Affected is an unknown fun... |
| CVE-2023-0611 | HIGH | 8.8 | 3.9% | Feb 1, 2023 | A vulnerability, which was classified as critical, has been found in TRENDnet TEW-652BRP 3.04B01. This issue affects som... |
| CVE-2023-23692 | HIGH | 8.8 | 1.6% | Feb 1, 2023 | Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacke... |
| CVE-2023-22572 | HIGH | 7.8 | 0.2% | Feb 1, 2023 | Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in chan... |
| CVE-2023-0610 | MEDIUM | 4.3 | 0.4% | Feb 1, 2023 | Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3. |
| CVE-2023-0609 | MEDIUM | 4.3 | 0.6% | Feb 1, 2023 | Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3. |
| CVE-2023-24977 | HIGH | 7.5 | 1.2% | Feb 1, 2023 | Out-of-bounds Read vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.1.... |
| CVE-2023-0115 | — | — | — | Feb 1, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-0608 | MEDIUM | 5.4 | 0.5% | Feb 1, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository microweber/microweber prior to 1.3.2. |
| CVE-2023-0607 | MEDIUM | 4.8 | 0.7% | Feb 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository projectsend/projectsend prior to r1606. |
| CVE-2023-23846 | HIGH | 7.5 | 0.8% | Feb 1, 2023 | Due to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsi... |
| CVE-2023-20856 | HIGH | 8.8 | 0.4% | Feb 1, 2023 | VMware vRealize Operations (vROps) contains a CSRF bypass vulnerability. A malicious user could execute actions on the v... |
| CVE-2023-0587 | CRITICAL | 9.1 | 59.6% | Feb 1, 2023 | A file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length heade... |
| CVE-2023-0524 | HIGH | 8.8 | 0.6% | Feb 1, 2023 | As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This co... |
| CVE-2023-0454 | HIGH | 8.1 | 1.0% | Feb 1, 2023 | OrangeScrum version 2.0.11 allows an authenticated external attacker to delete arbitrary local files from the server. Th... |
| CVE-2023-23928 | CRITICAL | 9.8 | 0.5% | Feb 1, 2023 | reason-jose is a JOSE implementation in ReasonML and OCaml.`Jose.Jws.validate` does not check HS256 signatures. This all... |
| CVE-2023-23630 | MEDIUM | 6.1 | 0.6% | Feb 1, 2023 | Eta is an embedded JS templating engine that works inside Node, Deno, and the browser. XSS attack - anyone using the Exp... |
| CVE-2023-0606 | MEDIUM | 6.1 | 0.6% | Feb 1, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7. |
| CVE-2023-24956 | HIGH | 8.8 | 0.7% | Feb 1, 2023 | Forget Heart Message Box v1.1 was discovered to contain a SQL injection vulnerability via the name parameter at /cha.php... |
| CVE-2023-24241 | CRITICAL | 9.8 | 0.7% | Feb 1, 2023 | Forget Heart Message Box v1.1 was discovered to contain a SQL injection vulnerability via the name parameter at /admin/l... |
| CVE-2023-23924 | CRITICAL | 9.8 | 3.6% | Feb 1, 2023 | Dompdf is an HTML to PDF converter. The URI validation on dompdf 2.0.1 can be bypassed on SVG parsing by passing `<image... |
| CVE-2023-0341 | HIGH | 7.8 | 1.0% | Feb 1, 2023 | A stack buffer overflow exists in the ec_glob function of editorconfig-core-c before v0.12.6 which allowed an attacker t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now