2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51462 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2023-51461 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2023-51460 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2023-51459 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2023-51458 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2023-51457 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2023-47236 | MEDIUM | 4.9 | 0.5% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Avirtum iPages Fli... |
| CVE-2023-46311 | MEDIUM | 6.5 | 0.5% | Dec 20, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in gVectors Team Comments – wpDiscuz.This issue affects C... |
| CVE-2023-41796 | MEDIUM | 6.5 | 0.4% | Dec 20, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Sunshine Photo Cart: Free Client Galleries... |
| CVE-2023-38519 | MEDIUM | 4.9 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MainWP MainWP Dash... |
| CVE-2023-38513 | MEDIUM | 5.4 | 0.3% | Dec 20, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Jordy Meow Photo Engine (Media Organizer & Lightroom).... |
| CVE-2023-6910 | MEDIUM | 6.5 | 0.9% | Dec 20, 2023 | A vulnerable API method in M-Files Server before 23.12.13195.0 allows for uncontrolled resource consumption. Authenticat... |
| CVE-2023-6769 | MEDIUM | 4.6 | 0.7% | Dec 20, 2023 | Stored XSS vulnerability in Amazing Little Poll, affecting versions 1.3 and 1.4. This vulnerability allows a remote atta... |
| CVE-2023-0011 | MEDIUM | 6.8 | 0.5% | Dec 20, 2023 | A flaw in the input validation in TOBY-L2 allows a user to execute arbitrary operating system commands using specificall... |
| CVE-2023-47707 | MEDIUM | 5.4 | 0.4% | Dec 20, 2023 | IBM Security Guardium Key Lifecycle Manager 4.3 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2023-47705 | MEDIUM | 4.3 | 0.5% | Dec 20, 2023 | IBM Security Guardium Key Lifecycle Manager 4.3 could allow an authenticated user to manipulate username data due to imp... |
| CVE-2023-47703 | MEDIUM | 5.3 | 0.8% | Dec 20, 2023 | IBM Security Guardium Key Lifecycle Manager 4.3 could allow a remote attacker to obtain sensitive information when a det... |
| CVE-2023-50706 | MEDIUM | 4.3 | 0.2% | Dec 20, 2023 | A user without administrator permissions with access to the UC500 windows system could perform a memory dum... |
| CVE-2023-50705 | MEDIUM | 5.3 | 0.5% | Dec 20, 2023 | An attacker could create malicious requests to obtain sensitive information about the web server. |
| CVE-2023-50704 | MEDIUM | 6.1 | 0.4% | Dec 20, 2023 | An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain ... |
| CVE-2023-50703 | MEDIUM | 5.9 | 0.3% | Dec 20, 2023 | An attacker with network access could perform a man-in-the-middle (MitM) attack and capture sensitive information to ga... |
| CVE-2023-47161 | MEDIUM | 6.5 | 0.8% | Dec 20, 2023 | IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 may mishandle input valida... |
| CVE-2023-42013 | MEDIUM | 5.3 | 0.7% | Dec 20, 2023 | IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 could allow a remote attac... |
| CVE-2023-42012 | MEDIUM | 5.5 | 0.2% | Dec 20, 2023 | An IBM UrbanCode Deploy Agent 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 installed as a Windows service in a non-stand... |
| CVE-2023-45172 | MEDIUM | 5.5 | 0.2% | Dec 19, 2023 | IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to caus... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now