2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21589 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds write vulnerability that ... |
| CVE-2023-21588 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an Improper Input Validation vulnerability... |
| CVE-2023-21587 | HIGH | 7.8 | 0.4% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability... |
| CVE-2023-0295 | MEDIUM | 4.8 | 0.5% | Jan 13, 2023 | The Launchpad plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of its settings parameters i... |
| CVE-2023-0294 | MEDIUM | 4.3 | 0.4% | Jan 13, 2023 | The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up t... |
| CVE-2023-0293 | MEDIUM | 4.3 | 0.6% | Jan 13, 2023 | The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capab... |
| CVE-2023-22491 | MEDIUM | 5.4 | 0.6% | Jan 13, 2023 | Gatsby is a free and open source framework based on React that helps developers build websites and apps. The gatsby-tran... |
| CVE-2023-22489 | LOW | 3.5 | 0.6% | Jan 13, 2023 | Flarum is a discussion platform for websites. If the first post of a discussion is permanently deleted but the discussio... |
| CVE-2023-22494 | — | — | — | Jan 13, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-20018. Reason: This candidate is a reservation d... |
| CVE-2023-0289 | MEDIUM | 5.4 | 0.5% | Jan 13, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository craigk5n/webcalendar prior to master. |
| CVE-2023-0288 | HIGH | 7.8 | 0.5% | Jan 13, 2023 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189. |
| CVE-2023-0221 | MEDIUM | 4.4 | 0.2% | Jan 13, 2023 | Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrat... |
| CVE-2023-22493 | HIGH | 7.5 | 0.8% | Jan 13, 2023 | RSSHub is an open source RSS feed generator. RSSHub is vulnerable to Server-Side Request Forgery (SSRF) attacks. This vu... |
| CVE-2023-0287 | MEDIUM | 5.4 | 0.5% | Jan 13, 2023 | A vulnerability was found in ityouknow favorites-web. It has been rated as problematic. Affected by this issue is some u... |
| CVE-2023-0283 | CRITICAL | 9.8 | 0.7% | Jan 13, 2023 | A vulnerability classified as critical has been found in SourceCodester Online Flight Booking Management System. This af... |
| CVE-2023-0281 | CRITICAL | 9.8 | 0.7% | Jan 13, 2023 | A vulnerability was found in SourceCodester Online Flight Booking Management System. It has been rated as critical. Affe... |
| CVE-2023-0105 | MEDIUM | 6.5 | 0.7% | Jan 13, 2023 | A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correc... |
| CVE-2023-0091 | LOW | 3.8 | 0.5% | Jan 13, 2023 | A flaw was found in Keycloak, where it did not properly check client tokens for possible revocation in its client creden... |
| CVE-2023-0237 | — | — | — | Jan 13, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2023-0235 | — | — | — | Jan 13, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2023-23566 | CRITICAL | 9.8 | 0.9% | Jan 13, 2023 | A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verificatio... |
| CVE-2023-23559 | HIGH | 7.8 | 0.3% | Jan 13, 2023 | In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow ... |
| CVE-2023-22417 | HIGH | 7.5 | 0.6% | Jan 13, 2023 | A Missing Release of Memory after Effective Lifetime vulnerability in the Flow Processing Daemon (flowd) of Juniper Netw... |
| CVE-2023-22416 | HIGH | 7.5 | 0.7% | Jan 13, 2023 | A Buffer Overflow vulnerability in SIP ALG of Juniper Networks Junos OS allows a network-based, unauthenticated attacker... |
| CVE-2023-22415 | HIGH | 7.5 | 0.8% | Jan 13, 2023 | An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-ba... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now