2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-47146MEDIUM6.5IBM Qradar SIEM 7.5 could allow a privileged user to obtain sensitive domain information due to data being misidentified...
CVE-2023-46624MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Parcel Pro.This issue affects Parcel Pro: from n/a ...
CVE-2023-42940MEDIUM5.7A session rendering issue was addressed with improved session tracking. This issue is fixed in macOS Sonoma 14.2.1. A us...
CVE-2023-37982MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Fo...
CVE-2023-35883MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This ...
CVE-2023-45105MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordP...
CVE-2023-41648MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This iss...
CVE-2023-40602MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This is...
CVE-2023-38481MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM,...
CVE-2023-38478MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBook...
CVE-2023-49706MEDIUM6.8Defective request context handling in Self Service in LinOTP 3.x before 3.2.5 allows remote unauthenticated attackers to...
CVE-2023-25715MEDIUM6.5Missing Authorization vulnerability in GamiPress GamiPress – The #1 gamification plugin to reward points, achievements, ...
CVE-2023-6872MEDIUM6.5Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users...
CVE-2023-6871MEDIUM4.3Under certain conditions, Firefox did not display a warning when a user attempted to navigate to a new protocol handler....
CVE-2023-6870MEDIUM4.3Applications which spawn a Toast notification in a background thread may have obscured fullscreen notifications displaye...
CVE-2023-6869MEDIUM6.5A `<dialog>` element could have been manipulated to paint content outside of a sandboxed iframe. This could allow unt...
CVE-2023-6868MEDIUM4.3In some instances, the user-agent would allow push requests which lacked a valid VAPID even though the push manager subs...
CVE-2023-6867MEDIUM6.1The timing of a button click causing a popup to disappear was approximately the same length as the anti-clickjacking del...
CVE-2023-6865MEDIUM6.5`EncryptingOutputStream` was susceptible to exposing uninitialized data. This issue could only be abused in order to wr...
CVE-2023-6860MEDIUM6.5The `VideoBridge` allowed any content process to use textures produced by remote decoders. This could be abused to esca...
CVE-2023-6857MEDIUM5.3When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary....
CVE-2023-6135MEDIUM4.3Multiple NSS NIST curves were susceptible to a side-channel attack known as "Minerva". This attack could potentially all...
CVE-2023-50762MEDIUM4.3When processing a PGP/MIME payload that contains digitally signed text, the first paragraph of the text was never shown ...
CVE-2023-50761MEDIUM4.3The signature of a digitally signed S/MIME email message may optionally specify the signature creation date and time. If...
CVE-2023-6945MEDIUM4.8A vulnerability has been found in SourceCodester Online Student Management System 1.0 and classified as problematic. Aff...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now