2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-47527MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sajjad Hossain Sag...
CVE-2023-47525MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A WP Life Event Mo...
CVE-2023-6122MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in İstanbul Soft Info...
CVE-2023-50473MEDIUM5.4Cross-Site Scripting (XSS) vulnerability in bill-ahmed qbit-matUI version 1.16.4, allows remote attackers to obtain sens...
CVE-2023-5989MEDIUM6.1An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Inform...
CVE-2023-5988MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Informati...
CVE-2023-50783MEDIUM6.5Apache Airflow, versions before 2.8.0, is affected by a vulnerability that allows an authenticated user without the vari...
CVE-2023-49920MEDIUM6.5Apache Airflow, version 2.7.0 through 2.7.3, has a vulnerability that allows an attacker to trigger a DAG in a GET reque...
CVE-2023-48291MEDIUM4.3Apache Airflow, in versions prior to 2.8.0, contains a security vulnerability that allows an authenticated user with lim...
CVE-2023-47265MEDIUM5.4Apache Airflow, versions 2.6.0 through 2.7.3 has a stored XSS vulnerability that allows a DAG author to add an unbounded...
CVE-2023-7026MEDIUM6.5A vulnerability was found in Lightxun IPTV Gateway up to 20231208. It has been rated as problematic. This issue affects ...
CVE-2023-45700MEDIUM5.4HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web ...
CVE-2023-28025MEDIUM4.8Due to this vulnerability, the Master operator could potentially incorporate an SVG tag into HTML, leading to an alert p...
CVE-2023-47093MEDIUM6.5An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.21, 4.4.0 through 4.6.8, and 4.7.0. Send...
CVE-2023-41166MEDIUM5.3An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.39, 3.11.0 through 3.11.27, 4.3.0 throug...
CVE-2023-50639MEDIUM5.4Cross Site Scripting (XSS) vulnerability in CuteHttpFileServer v.1.0 and v.2.0 allows attackers to obtain sensitive info...
CVE-2023-49272MEDIUM5.4Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'child...
CVE-2023-49271MEDIUM5.4Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check...
CVE-2023-49270MEDIUM5.4Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'check...
CVE-2023-31231MEDIUM6.5Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Fr...
CVE-2023-49269MEDIUM5.4Hotel Management v1.0 is vulnerable to multiple authenticated Reflected Cross-Site Scripting vulnerabilities. The 'adult...
CVE-2023-30872MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BannerSky BSK Form...
CVE-2023-3742MEDIUM6.8Insufficient policy enforcement in ADB in Google Chrome on ChromeOS prior to 114.0.5735.90 allowed a local attacker to b...
CVE-2023-32743MEDIUM4.9Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WooCommerce Automa...
CVE-2023-6784MEDIUM4.3 A malicious user could potentially use the Sitefinity system for the distribution of phishing emails.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now