2023 CVE Vulnerabilities

31,213 CVEs published in 2023.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2023-37904LOW3.1Discourse is an open source discussion platform. Prior to version 3.0.6 of the `stable` branch and version 3.1.0.beta7 o...
CVE-2023-37900LOW2.7Crossplane is a framework for building cloud native control planes without needing to write code. In versions prior to 1...
CVE-2023-33229LOW3.5The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a...
CVE-2023-38496LOW3.3Apptainer is an open source container platform. Version 1.2.0-rc.2 introduced an ineffective privilege drop when request...
CVE-2023-37361LOW2.7REDCap 12.0.26 LTS and 12.3.2 Standard allows SQL Injection via scheduling, repeatforms, purpose, app_title, or randomiz...
CVE-2023-25840LOW3.4There is a Cross-site Scripting vulnerability in ArcGIS Server in versions 11.1 and below that may allow a remote, authe...
CVE-2023-3803LOW3.7A vulnerability classified as problematic has been found in Chengdu Flash Flood Disaster Monitoring and Warning System 2...
CVE-2023-3299LOW2.7HashiCorp Nomad Enterprise 1.2.11 up to 1.5.6, and 1.4.10 ACL policies using a block without a label generates unexpecte...
CVE-2023-3072LOW3.8HashiCorp Nomad and Nomad Enterprise 0.7.0 up to 1.5.6 and 1.4.10 ACL policies using a block without a label generates u...
CVE-2023-3674LOW2.8A flaw was found in the keylime attestation verifier, which fails to flag a device's submitted TPM quote as faulty when ...
CVE-2023-22052LOW3.1Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.19 a...
CVE-2023-22051LOW3.7Vulnerability in the Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE (component: Gra...
CVE-2023-22049LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22048LOW3.1Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that ...
CVE-2023-22045LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22044LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22038LOW2.7Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions...
CVE-2023-22036LOW3.7Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-22010LOW2.2Vulnerability in Oracle Essbase (component: Security and Provisioning). The supported version that is affected is 21.4...
CVE-2023-22006LOW3.1Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition, Oracle GraalVM for JDK product of Oracle Java SE...
CVE-2023-21949LOW3.7Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affect...
CVE-2023-3614LOW3.3Mattermost fails to properly validate a gif image file, allowing an attacker to consume a significant amount of server r...
CVE-2023-3613LOW3.5Mattermost WelcomeBot plugin fails to to validate the membership status when inviting or adding users to channels allowi...
CVE-2023-3587LOW2.7Mattermost fails to properly show information in the UI, allowing a system admin to modify a board state allowing any us...
CVE-2023-3584LOW3.1Mattermost fails to properly check the authorization of POST /api/v4/teams when passing a team override scheme ID in the...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now