2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2023-33229LOW3.5The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a...
CVE-2023-38496LOW3.3Apptainer is an open source container platform. Version 1.2.0-rc.2 introduced an ineffective privilege drop when request...
CVE-2023-37361LOW2.7REDCap 12.0.26 LTS and 12.3.2 Standard allows SQL Injection via scheduling, repeatforms, purpose, app_title, or randomiz...
CVE-2023-25840LOW3.4There is a Cross-site Scripting vulnerability in ArcGIS Server in versions 11.1 and below that may allow a remote, authe...
CVE-2023-3803LOW3.7A vulnerability classified as problematic has been found in Chengdu Flash Flood Disaster Monitoring and Warning System 2...
CVE-2023-3299LOW2.7HashiCorp Nomad Enterprise 1.2.11 up to 1.5.6, and 1.4.10 ACL policies using a block without a label generates unexpecte...
CVE-2023-3072LOW3.8HashiCorp Nomad and Nomad Enterprise 0.7.0 up to 1.5.6 and 1.4.10 ACL policies using a block without a label generates u...
CVE-2023-3674LOW2.8A flaw was found in the keylime attestation verifier, which fails to flag a device's submitted TPM quote as faulty when ...
CVE-2023-22052LOW3.1Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.19 a...
CVE-2023-22051LOW3.7Vulnerability in the Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (component: Gra...
CVE-2023-22049LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22048LOW3.1Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that ...
CVE-2023-22045LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22044LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22038LOW2.7Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions...
CVE-2023-22036LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22010LOW2.2Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4...
CVE-2023-22006LOW3.1Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-21949LOW3.7Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affect...
CVE-2023-3614LOW3.3Mattermost fails to properly validate a gif image file, allowing an attacker to consume a significant amount of server r...
CVE-2023-3613LOW3.5Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowi...
CVE-2023-3587LOW2.7Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any us...
CVE-2023-3584LOW3.1Mattermost fails to properly check the authorization of POST /api/v4/teams when passing a team override scheme ID in the...
CVE-2023-30565LOW3.5An insecure connection between Systems Manager and CQI Reporter application could expose infusion data to an attacker.
CVE-2023-3363LOW3.8An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now