2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22522 | HIGH | 8.8 | 12.8% | Dec 6, 2023 | This Template Injection vulnerability allows an authenticated attacker, including one with anonymous access, to inject u... |
| CVE-2023-6510 | HIGH | 8.8 | 1.0% | Dec 6, 2023 | Use after free in Media Capture in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a user t... |
| CVE-2023-6509 | HIGH | 8.8 | 1.0% | Dec 6, 2023 | Use after free in Side Panel Search in Google Chrome prior to 120.0.6099.62 allowed a remote attacker who convinced a us... |
| CVE-2023-6508 | HIGH | 8.8 | 1.0% | Dec 6, 2023 | Use after free in Media Stream in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially exploit ... |
| CVE-2023-5970 | HIGH | 8.8 | 0.9% | Dec 5, 2023 | Improper authentication in the SMA100 SSL-VPN virtual office portal allows a remote authenticated attacker to create an ... |
| CVE-2023-49297 | HIGH | 7.8 | 0.5% | Dec 5, 2023 | PyDrive2 is a wrapper library of google-api-python-client that simplifies many common Google Drive API V2 tasks. Unsafe ... |
| CVE-2023-44221 | HIGH | 7.2 | 74.9% | Dec 5, 2023 | Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated att... |
| CVE-2023-46674 | HIGH | 7.8 | 0.2% | Dec 5, 2023 | An issue was identified that allowed the unsafe deserialization of java objects from hadoop or spark configuration prope... |
| CVE-2023-45287 | HIGH | 7.5 | 1.3% | Dec 5, 2023 | Before Go 1.20, the RSA based TLS key exchanges used the math/big library, which is not constant time. RSA blinding was ... |
| CVE-2023-6357 | HIGH | 8.8 | 1.0% | Dec 5, 2023 | A low-privileged remote attacker could exploit the vulnerability and inject additional system commands via file system l... |
| CVE-2023-49448 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/nav/delete. |
| CVE-2023-49447 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/nav/update. |
| CVE-2023-49446 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/nav/save. |
| CVE-2023-49398 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/category/delete. |
| CVE-2023-49397 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/category/updateS... |
| CVE-2023-49396 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/category/save. |
| CVE-2023-49395 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/category/update. |
| CVE-2023-49383 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/tag/save. |
| CVE-2023-49382 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/div/delete. |
| CVE-2023-49381 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/div/update. |
| CVE-2023-49380 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/friend_link/dele... |
| CVE-2023-49379 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /admin/fr... |
| CVE-2023-49378 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/form/save. |
| CVE-2023-49377 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/tag/update. |
| CVE-2023-49376 | HIGH | 8.8 | 0.4% | Dec 5, 2023 | JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/tag/delete. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now