2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-21589HIGH7.8Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds write vulnerability that ...
CVE-2023-21588HIGH7.8Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an Improper Input Validation vulnerability...
CVE-2023-21587HIGH7.8Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability...
CVE-2023-0295MEDIUM4.8The Launchpad plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of its settings parameters i...
CVE-2023-0294MEDIUM4.3The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up t...
CVE-2023-0293MEDIUM4.3The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capab...
CVE-2023-22491MEDIUM5.4Gatsby is a free and open source framework based on React that helps developers build websites and apps. The gatsby-tran...
CVE-2023-22489LOW3.5Flarum is a discussion platform for websites. If the first post of a discussion is permanently deleted but the discussio...
CVE-2023-22494Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-20018. Reason: This candidate is a reservation d...
CVE-2023-0289MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository craigk5n/webcalendar prior to master.
CVE-2023-0288HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189.
CVE-2023-0221MEDIUM4.4Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrat...
CVE-2023-22493HIGH7.5RSSHub is an open source RSS feed generator. RSSHub is vulnerable to Server-Side Request Forgery (SSRF) attacks. This vu...
CVE-2023-0287MEDIUM5.4A vulnerability was found in ityouknow favorites-web. It has been rated as problematic. Affected by this issue is some u...
CVE-2023-0283CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Flight Booking Management System. This af...
CVE-2023-0281CRITICAL9.8A vulnerability was found in SourceCodester Online Flight Booking Management System. It has been rated as critical. Affe...
CVE-2023-0105MEDIUM6.5A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correc...
CVE-2023-0091LOW3.8A flaw was found in Keycloak, where it did not properly check client tokens for possible revocation in its client creden...
CVE-2023-0237Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2023-0235Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2023-23566CRITICAL9.8A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verificatio...
CVE-2023-23559HIGH7.8In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow ...
CVE-2023-22417HIGH7.5A Missing Release of Memory after Effective Lifetime vulnerability in the Flow Processing Daemon (flowd) of Juniper Netw...
CVE-2023-22416HIGH7.5A Buffer Overflow vulnerability in SIP ALG of Juniper Networks Junos OS allows a network-based, unauthenticated attacker...
CVE-2023-22415HIGH7.5An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-ba...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now