2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47527 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sajjad Hossain Sag... |
| CVE-2023-47525 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A WP Life Event Mo... |
| CVE-2023-6122 | MEDIUM | 6.1 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in İstanbul Soft Info... |
| CVE-2023-50473 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | Cross-Site Scripting (XSS) vulnerability in bill-ahmed qbit-matUI version 1.16.4, allows remote attackers to obtain sens... |
| CVE-2023-5989 | MEDIUM | 6.1 | 0.3% | Dec 21, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Inform... |
| CVE-2023-5988 | MEDIUM | 6.1 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Informati... |
| CVE-2023-50783 | MEDIUM | 6.5 | 1.4% | Dec 21, 2023 | Apache Airflow, versions before 2.8.0, is affected by a vulnerability that allows an authenticated user without the vari... |
| CVE-2023-49920 | MEDIUM | 6.5 | 1.0% | Dec 21, 2023 | Apache Airflow, version 2.7.0 through 2.7.3, has a vulnerability that allows an attacker to trigger a DAG in a GET reque... |
| CVE-2023-48291 | MEDIUM | 4.3 | 1.8% | Dec 21, 2023 | Apache Airflow, in versions prior to 2.8.0, contains a security vulnerability that allows an authenticated user with lim... |
| CVE-2023-47265 | MEDIUM | 5.4 | 1.3% | Dec 21, 2023 | Apache Airflow, versions 2.6.0 through 2.7.3 has a stored XSS vulnerability that allows a DAG author to add an unbounded... |
| CVE-2023-7026 | MEDIUM | 6.5 | 0.6% | Dec 21, 2023 | A vulnerability was found in Lightxun IPTV Gateway up to 20231208. It has been rated as problematic. This issue affects ... |
| CVE-2023-45700 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web ... |
| CVE-2023-28025 | MEDIUM | 4.8 | 0.3% | Dec 21, 2023 | Due to this vulnerability, the Master operator could potentially incorporate an SVG tag into HTML, leading to an alert p... |
| CVE-2023-47093 | MEDIUM | 6.5 | 0.3% | Dec 21, 2023 | An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.21, 4.4.0 through 4.6.8, and 4.7.0. Send... |
| CVE-2023-41166 | MEDIUM | 5.3 | 0.4% | Dec 21, 2023 | An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.39, 3.11.0 through 3.11.27, 4.3.0 throug... |
| CVE-2023-50639 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Cross Site Scripting (XSS) vulnerability in CuteHttpFileServer v.1.0 and v.2.0 allows attackers to obtain sensitive info... |
| CVE-2023-49272 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'child... |
| CVE-2023-49271 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check... |
| CVE-2023-49270 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check... |
| CVE-2023-31231 | MEDIUM | 6.5 | 0.5% | Dec 20, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Fr... |
| CVE-2023-49269 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'adult... |
| CVE-2023-30872 | MEDIUM | 6.5 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BannerSky BSK Form... |
| CVE-2023-3742 | MEDIUM | 6.8 | 0.2% | Dec 20, 2023 | Insufficient policy enforcement in ADB in Google Chrome on ChromeOS prior to 114.0.5735.90 allowed a local attacker to b... |
| CVE-2023-32743 | MEDIUM | 4.9 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WooCommerce Automa... |
| CVE-2023-6784 | MEDIUM | 4.3 | 0.4% | Dec 20, 2023 | A malicious user could potentially use the Sitefinity system for the distribution of phishing emails. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now