2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-22465MEDIUM5.3Http4s is a Scala interface for HTTP services. Starting with version 0.1.0 and prior to versions 0.21.34, 0.22.15, 0.23....
CVE-2023-22464MEDIUM5.4ViewVC is a browser interface for CVS and Subversion version control repositories. Versions prior to 1.2.3 and 1.1.30 ar...
CVE-2023-22463CRITICAL9.8KubePi is a k8s panel. The jwt authentication function of KubePi through version 1.6.2 uses hard-coded Jwtsigkeys, resul...
CVE-2023-0049HIGH7.8Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.
CVE-2023-22461MEDIUM6.1The `sanitize-svg` package, a small SVG sanitizer to prevent cross-site scripting attacks, uses a deny-list-pattern to s...
CVE-2023-22460HIGH7.5go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec ...
CVE-2023-22457HIGH8.8CKEditor Integration UI adds support for editing wiki pages using CKEditor. Prior to versions 1.64.3,t he `CKEditor.HTML...
CVE-2023-0048HIGH8.8Code Injection in GitHub repository lirantal/daloradius prior to master-branch.
CVE-2023-0046HIGH7.2Improper Restriction of Names for Files and Other Resources in GitHub repository lirantal/daloradius prior to master-bra...
CVE-2023-22456MEDIUM6.1ViewVC, a browser interface for CVS and Subversion version control repositories, as a cross-site scripting vulnerability...
CVE-2023-0039Rejected reason: Duplicate. Please use CVE-2022-4060 instead.
CVE-2023-0038MEDIUM6.1The "Survey Maker – Best WordPress Survey Plugin" plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ...
CVE-2023-22452MEDIUM6.5kenny2automate is a Discord bot. In the web interface for server settings, form elements were generated with Discord cha...
CVE-2023-22451HIGH8.8Kiwi TCMS is an open source test management system. In version 11.6 and prior, when users register new accounts and/or c...
CVE-2023-22551HIGH7.5The FTP (aka "Implementation of a simple FTP client and server") project through 96c1a35 allows remote attackers to caus...
CVE-2023-0029HIGH7.5A vulnerability was found in Multilaser RE708 RE1200R4GC-2T2R-V3_v3411b_MUL029B. It has been rated as problematic. This ...
CVE-2023-0028MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository linagora/twake prior to 2023.Q1.1200+.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now