2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22465 | MEDIUM | 5.3 | 0.8% | Jan 4, 2023 | Http4s is a Scala interface for HTTP services. Starting with version 0.1.0 and prior to versions 0.21.34, 0.22.15, 0.23.... |
| CVE-2023-22464 | MEDIUM | 5.4 | 0.6% | Jan 4, 2023 | ViewVC is a browser interface for CVS and Subversion version control repositories. Versions prior to 1.2.3 and 1.1.30 ar... |
| CVE-2023-22463 | CRITICAL | 9.8 | 69.7% | Jan 4, 2023 | KubePi is a k8s panel. The jwt authentication function of KubePi through version 1.6.2 uses hard-coded Jwtsigkeys, resul... |
| CVE-2023-0049 | HIGH | 7.8 | 0.5% | Jan 4, 2023 | Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143. |
| CVE-2023-22461 | MEDIUM | 6.1 | 0.6% | Jan 4, 2023 | The `sanitize-svg` package, a small SVG sanitizer to prevent cross-site scripting attacks, uses a deny-list-pattern to s... |
| CVE-2023-22460 | HIGH | 7.5 | 0.9% | Jan 4, 2023 | go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec ... |
| CVE-2023-22457 | HIGH | 8.8 | 18.7% | Jan 4, 2023 | CKEditor Integration UI adds support for editing wiki pages using CKEditor. Prior to versions 1.64.3,t he `CKEditor.HTML... |
| CVE-2023-0048 | HIGH | 8.8 | 32.3% | Jan 4, 2023 | Code Injection in GitHub repository lirantal/daloradius prior to master-branch. |
| CVE-2023-0046 | HIGH | 7.2 | 1.0% | Jan 4, 2023 | Improper Restriction of Names for Files and Other Resources in GitHub repository lirantal/daloradius prior to master-bra... |
| CVE-2023-22456 | MEDIUM | 6.1 | 0.7% | Jan 3, 2023 | ViewVC, a browser interface for CVS and Subversion version control repositories, as a cross-site scripting vulnerability... |
| CVE-2023-0039 | — | — | — | Jan 3, 2023 | Rejected reason: Duplicate. Please use CVE-2022-4060 instead. |
| CVE-2023-0038 | MEDIUM | 6.1 | 0.8% | Jan 3, 2023 | The "Survey Maker – Best WordPress Survey Plugin" plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2023-22452 | MEDIUM | 6.5 | 0.5% | Jan 2, 2023 | kenny2automate is a Discord bot. In the web interface for server settings, form elements were generated with Discord cha... |
| CVE-2023-22451 | HIGH | 8.8 | 0.7% | Jan 2, 2023 | Kiwi TCMS is an open source test management system. In version 11.6 and prior, when users register new accounts and/or c... |
| CVE-2023-22551 | HIGH | 7.5 | 1.5% | Jan 1, 2023 | The FTP (aka "Implementation of a simple FTP client and server") project through 96c1a35 allows remote attackers to caus... |
| CVE-2023-0029 | HIGH | 7.5 | 1.0% | Jan 1, 2023 | A vulnerability was found in Multilaser RE708 RE1200R4GC-2T2R-V3_v3411b_MUL029B. It has been rated as problematic. This ... |
| CVE-2023-0028 | MEDIUM | 5.4 | 40.9% | Jan 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository linagora/twake prior to 2023.Q1.1200+. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now