2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7054 | MEDIUM | 5.4 | 0.5% | Dec 22, 2023 | A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been rated as problematic. This issue af... |
| CVE-2023-51704 | MEDIUM | 6.1 | 0.7% | Dec 22, 2023 | An issue was discovered in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2. In i... |
| CVE-2023-7052 | MEDIUM | 4.3 | 0.4% | Dec 22, 2023 | A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0. It has been classified as problematic. This aff... |
| CVE-2023-49086 | MEDIUM | 5.4 | 1.5% | Dec 22, 2023 | Cacti is a robust performance and fault management framework and a frontend to RRDTool - a Time Series Database (TSDB). ... |
| CVE-2023-48308 | MEDIUM | 6.5 | 0.5% | Dec 22, 2023 | Nextcloud/Cloud is a calendar app for Nextcloud. An attacker can gain access to stacktrace and internal paths of the ser... |
| CVE-2023-37520 | MEDIUM | 6.1 | 0.2% | Dec 21, 2023 | Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability identified in BigFix Server version 9.5.12.68, allowing ... |
| CVE-2023-7051 | MEDIUM | 4.3 | 0.4% | Dec 21, 2023 | A vulnerability was found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by this ... |
| CVE-2023-7050 | MEDIUM | 5.4 | 0.5% | Dec 21, 2023 | A vulnerability has been found in PHPGurukul Online Notes Sharing System 1.0 and classified as problematic. Affected by ... |
| CVE-2023-37519 | MEDIUM | 6.1 | 0.2% | Dec 21, 2023 | Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. This XSS vulnerability is in the Download Status Report... |
| CVE-2023-27319 | MEDIUM | 5.3 | 0.4% | Dec 21, 2023 | ONTAP Mediator versions prior to 1.7 are susceptible to a vulnerability that can allow an unauthenticated attacker to e... |
| CVE-2023-6804 | MEDIUM | 5.5 | 0.2% | Dec 21, 2023 | Improper privilege management allowed arbitrary workflows to be committed and run using an improperly scoped PAT. To exp... |
| CVE-2023-6803 | MEDIUM | 4 | 0.2% | Dec 21, 2023 | A race condition in GitHub Enterprise Server allows an outside collaborator to be added while a repository is being tran... |
| CVE-2023-6802 | MEDIUM | 6.5 | 0.7% | Dec 21, 2023 | An insertion of sensitive information into the log file in the audit log in GitHub Enterprise Server was identified that... |
| CVE-2023-6746 | MEDIUM | 5.7 | 0.5% | Dec 21, 2023 | An insertion of sensitive information into log file vulnerability was identified in the log files for a GitHub Enterpris... |
| CVE-2023-51380 | MEDIUM | 4.3 | 0.5% | Dec 21, 2023 | An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed issue comments to be re... |
| CVE-2023-51379 | MEDIUM | 4.9 | 0.6% | Dec 21, 2023 | An incorrect authorization vulnerability was identified in GitHub Enterprise Server that allowed issue comments to be up... |
| CVE-2023-46646 | MEDIUM | 5.3 | 0.5% | Dec 21, 2023 | Improper access control in all versions of GitHub Enterprise Server allows unauthorized users to view private repository... |
| CVE-2023-46645 | MEDIUM | 4.9 | 0.8% | Dec 21, 2023 | A path traversal vulnerability was identified in GitHub Enterprise Server that allowed arbitrary file reading when build... |
| CVE-2023-7042 | MEDIUM | 5.5 | 0.3% | Dec 21, 2023 | A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/... |
| CVE-2023-7041 | MEDIUM | 5.4 | 0.9% | Dec 21, 2023 | A vulnerability, which was classified as critical, has been found in codelyfe Stupid Simple CMS up to 1.2.4. Affected by... |
| CVE-2023-7040 | MEDIUM | 6.5 | 0.8% | Dec 21, 2023 | A vulnerability classified as problematic was found in codelyfe Stupid Simple CMS up to 1.2.4. Affected by this vulnerab... |
| CVE-2023-50732 | MEDIUM | 6.3 | 0.5% | Dec 21, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible t... |
| CVE-2023-50834 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in August Infotech Wo... |
| CVE-2023-49765 | MEDIUM | 6.5 | 0.4% | Dec 21, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Blaz K. Rate my Post – WP Rating System.This issue aff... |
| CVE-2023-47191 | MEDIUM | 6.5 | 0.4% | Dec 21, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in KaineLabs Youzify – BuddyPress Community, User Profile... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now