2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-51384MEDIUM5.5In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constr...
CVE-2023-48795MEDIUM5.9The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remot...
CVE-2023-6778MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository allegroai/clearml-server prior to 1.13.0.
CVE-2023-5236MEDIUM6.5A flaw was found in Infinispan, which does not detect circular object references when unmarshalling. An authenticated at...
CVE-2023-5115MEDIUM6.3An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a mal...
CVE-2023-5056MEDIUM4.1A flaw was found in the Skupper operator, which may permit a certain configuration to create a service account that woul...
CVE-2023-3629MEDIUM6.5A flaw was found in Infinispan's REST, Cache retrieval endpoints do not properly evaluate the necessary admin permission...
CVE-2023-3628MEDIUM6.5A flaw was found in Infinispan's REST. Bulk read endpoints do not properly evaluate user permissions for the operation. ...
CVE-2023-35867MEDIUM5.9An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthe...
CVE-2023-28053MEDIUM5.3 Dell NetWorker Virtual Edition versions 19.8 and below contain the use of deprecated cryptographic algorithms in the SS...
CVE-2023-6911MEDIUM4.8Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting...
CVE-2023-6908MEDIUM5.9A vulnerability, which was classified as problematic, was found in DFIRKuiper Kuiper 2.3.4. This affects the function un...
CVE-2023-50979MEDIUM5.9Crypto++ (aka cryptopp) through 8.9.0 has a Marvin side channel during decryption with PKCS#1 v1.5 padding.
CVE-2023-6896MEDIUM6.1A vulnerability was found in SourceCodester Simple Image Stack Website 1.0. It has been rated as problematic. This issue...
CVE-2023-6894MEDIUM6.5A vulnerability was found in Hikvision Intercom Broadcasting System 3.0.3_20201113_RELEASE(HIK). It has been classified ...
CVE-2023-6890MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
CVE-2023-6889MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
CVE-2023-28022MEDIUM6.5HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive in...
CVE-2023-27317MEDIUM4.6ONTAP 9 versions 9.12.1P8, 9.13.1P4, and 9.13.1P5 are susceptible to a vulnerability which will cause all SAS-attached ...
CVE-2023-50266MEDIUM5.3Bazarr manages and downloads subtitles. In version 1.2.4, the proxy method in bazarr/bazarr/app/ui.py does not validate ...
CVE-2023-50720MEDIUM5.3XWiki Platform is a generic wiki platform. Prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search in X...
CVE-2023-6051MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 16.4.4, all versions starting from 16.5 befor...
CVE-2023-5512MEDIUM5.7An issue has been discovered in GitLab CE/EE affecting all versions from 16.3 before 16.4.4, all versions starting from ...
CVE-2023-5310MEDIUM6.5A denial of service vulnerability exists in all Silicon Labs Z-Wave controller and endpoint devices running Z-Wave SDK v...
CVE-2023-5061MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 9.3 before 16.4.4, all versions starting fro...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now