2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0299 | CRITICAL | 9.8 | 0.9% | Jan 14, 2023 | Improper Input Validation in GitHub repository publify/publify prior to 9.2.10. |
| CVE-2023-22602 | HIGH | 7.5 | 1.6% | Jan 14, 2023 | When using Apache Shiro before 1.11.0 together with Spring Boot 2.6+, a specially crafted HTTP request may cause an auth... |
| CVE-2023-0298 | MEDIUM | 6.5 | 0.6% | Jan 14, 2023 | Incorrect Authorization in GitHub repository firefly-iii/firefly-iii prior to 5.8.0. |
| CVE-2023-0297 | CRITICAL | 9.8 | 97.0% | Jan 14, 2023 | Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31. |
| CVE-2023-22851 | HIGH | 7.2 | 1.0% | Jan 14, 2023 | Tiki before 24.2 allows lib/importer/tikiimporter_blog_wordpress.php PHP Object Injection by an admin because of an unse... |
| CVE-2023-22850 | HIGH | 8.8 | 1.2% | Jan 14, 2023 | Tiki before 24.1, when the Spreadsheets feature is enabled, allows lib/sheet/grid.php PHP Object Injection because of an... |
| CVE-2023-22497 | CRITICAL | 9.1 | 0.7% | Jan 14, 2023 | Netdata is an open source option for real-time infrastructure monitoring and troubleshooting. Each Netdata Agent has an ... |
| CVE-2023-23589 | MEDIUM | 6.5 | 0.8% | Jan 14, 2023 | The SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not th... |
| CVE-2023-22853 | HIGH | 8.8 | 0.9% | Jan 14, 2023 | Tiki before 24.1, when feature_create_webhelp is enabled, allows lib/structures/structlib.php PHP Object Injection becau... |
| CVE-2023-22852 | MEDIUM | 6.5 | 0.3% | Jan 14, 2023 | Tiki through 25.0 allows CSRF attacks that are related to tiki-importer.php and tiki-import_sheet.php. |
| CVE-2023-22496 | CRITICAL | 9.8 | 36.2% | Jan 14, 2023 | Netdata is an open source option for real-time infrastructure monitoring and troubleshooting. An attacker with the abili... |
| CVE-2023-22495 | CRITICAL | 9.8 | 1.1% | Jan 14, 2023 | Izanami is a shared configuration service well-suited for micro-service architecture implementation. Attackers can bypas... |
| CVE-2023-22480 | CRITICAL | 9.8 | 66.8% | Jan 14, 2023 | KubeOperator is an open source Kubernetes distribution focused on helping enterprises plan, deploy and operate productio... |
| CVE-2023-22478 | HIGH | 7.5 | 3.6% | Jan 14, 2023 | KubePi is a modern Kubernetes panel. The API interfaces with unauthorized entities and may leak sensitive information. T... |
| CVE-2023-22471 | MEDIUM | 4.3 | 0.5% | Jan 14, 2023 | Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with N... |
| CVE-2023-22470 | MEDIUM | 6.5 | 0.7% | Jan 14, 2023 | Nextcloud Deck is a kanban style organization tool aimed at personal planning and project organization for teams integra... |
| CVE-2023-21599 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that co... |
| CVE-2023-21598 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulnerability that could l... |
| CVE-2023-21597 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds write vulnerability that c... |
| CVE-2023-21596 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an Improper Input Validation vulnerability ... |
| CVE-2023-21595 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds write vulnerability that c... |
| CVE-2023-21594 | HIGH | 7.8 | 0.4% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability ... |
| CVE-2023-21592 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c... |
| CVE-2023-21591 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c... |
| CVE-2023-21590 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds write vulnerability that ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now