2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-51462MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2023-51461MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2023-51460MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2023-51459MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2023-51458MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2023-51457MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2023-47236MEDIUM4.9Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Avirtum iPages Fli...
CVE-2023-46311MEDIUM6.5Authorization Bypass Through User-Controlled Key vulnerability in gVectors Team Comments – wpDiscuz.This issue affects C...
CVE-2023-41796MEDIUM6.5Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Sunshine Photo Cart: Free Client Galleries...
CVE-2023-38519MEDIUM4.9Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MainWP MainWP Dash...
CVE-2023-38513MEDIUM5.4Authorization Bypass Through User-Controlled Key vulnerability in Jordy Meow Photo Engine (Media Organizer & Lightroom)....
CVE-2023-6910MEDIUM6.5A vulnerable API method in M-Files Server before 23.12.13195.0 allows for uncontrolled resource consumption. Authenticat...
CVE-2023-6769MEDIUM4.6Stored XSS vulnerability in Amazing Little Poll, affecting versions 1.3 and 1.4. This vulnerability allows a remote atta...
CVE-2023-0011MEDIUM6.8A flaw in the input validation in TOBY-L2 allows a user to execute arbitrary operating system commands using specificall...
CVE-2023-47707MEDIUM5.4IBM Security Guardium Key Lifecycle Manager 4.3 is vulnerable to cross-site scripting. This vulnerability allows users t...
CVE-2023-47705MEDIUM4.3IBM Security Guardium Key Lifecycle Manager 4.3 could allow an authenticated user to manipulate username data due to imp...
CVE-2023-47703MEDIUM5.3IBM Security Guardium Key Lifecycle Manager 4.3 could allow a remote attacker to obtain sensitive information when a det...
CVE-2023-50706MEDIUM4.3 A user without administrator permissions with access to the UC500 windows system could perform a memory dum...
CVE-2023-50705MEDIUM5.3 An attacker could create malicious requests to obtain sensitive information about the web server.
CVE-2023-50704MEDIUM6.1 An attacker could construct a URL within the application that causes a redirection to an arbitrary external domain ...
CVE-2023-50703MEDIUM5.9 An attacker with network access could perform a man-in-the-middle (MitM) attack and capture sensitive information to ga...
CVE-2023-47161MEDIUM6.5IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 may mishandle input valida...
CVE-2023-42013MEDIUM5.3IBM UrbanCode Deploy (UCD) 7.1 through 7.1.2.14, 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 could allow a remote attac...
CVE-2023-42012MEDIUM5.5An IBM UrbanCode Deploy Agent 7.2 through 7.2.3.7, and 7.3 through 7.3.2.2 installed as a Windows service in a non-stand...
CVE-2023-45172MEDIUM5.5IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in AIX windows to caus...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now