2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47146 | MEDIUM | 6.5 | 0.7% | Dec 19, 2023 | IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified... |
| CVE-2023-46624 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a ... |
| CVE-2023-42940 | MEDIUM | 5.7 | 0.7% | Dec 19, 2023 | A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A us... |
| CVE-2023-37982 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Fo... |
| CVE-2023-35883 | MEDIUM | 6.1 | 0.5% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This ... |
| CVE-2023-45105 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordP... |
| CVE-2023-41648 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This iss... |
| CVE-2023-40602 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This is... |
| CVE-2023-38481 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM,... |
| CVE-2023-38478 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBook... |
| CVE-2023-49706 | MEDIUM | 6.8 | 0.6% | Dec 19, 2023 | Defective request context handling in Self Service in LinOTP 3.x before 3.2.5 allows remote unauthenticated attackers to... |
| CVE-2023-25715 | MEDIUM | 6.5 | 0.5% | Dec 19, 2023 | Missing Authorization vulnerability in GamiPress GamiPress – The #1 gamification plugin to reward points, achievements, ... |
| CVE-2023-6872 | MEDIUM | 6.5 | 0.6% | Dec 19, 2023 | Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users... |
| CVE-2023-6871 | MEDIUM | 4.3 | 0.5% | Dec 19, 2023 | Under certain conditions, Firefox did not display a warning when a user attempted to navigate to a new protocol handler.... |
| CVE-2023-6870 | MEDIUM | 4.3 | 0.4% | Dec 19, 2023 | Applications which spawn a Toast notification in a background thread may have obscured fullscreen notifications displaye... |
| CVE-2023-6869 | MEDIUM | 6.5 | 0.6% | Dec 19, 2023 | A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow unt... |
| CVE-2023-6868 | MEDIUM | 4.3 | 0.5% | Dec 19, 2023 | In some instances, the user-agent would allow push requests which lacked a valid VAPID even though the push manager subs... |
| CVE-2023-6867 | MEDIUM | 6.1 | 0.7% | Dec 19, 2023 | The timing of a button click causing a popup to disappear was approximately the same length as the anti-clickjacking del... |
| CVE-2023-6865 | MEDIUM | 6.5 | 0.9% | Dec 19, 2023 | `EncryptingOutputStream` was susceptible to exposing uninitialized data. This issue could only be abused in order to wr... |
| CVE-2023-6860 | MEDIUM | 6.5 | 1.0% | Dec 19, 2023 | The `VideoBridge` allowed any content process to use textures produced by remote decoders. This could be abused to esca... |
| CVE-2023-6857 | MEDIUM | 5.3 | 0.7% | Dec 19, 2023 | When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary.... |
| CVE-2023-6135 | MEDIUM | 4.3 | 0.7% | Dec 19, 2023 | Multiple NSS NIST curves were susceptible to a side-channel attack known as "Minerva". This attack could potentially all... |
| CVE-2023-50762 | MEDIUM | 4.3 | 0.6% | Dec 19, 2023 | When processing a PGP/MIME payload that contains digitally signed text, the first paragraph of the text was never shown ... |
| CVE-2023-50761 | MEDIUM | 4.3 | 0.6% | Dec 19, 2023 | The signature of a digitally signed S/MIME email message may optionally specify the signature creation date and time. If... |
| CVE-2023-6945 | MEDIUM | 4.8 | 0.6% | Dec 19, 2023 | A vulnerability has been found in SourceCodester Online Student Management System 1.0 and classified as problematic. Aff... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now