2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-42183MEDIUM5.3lockss-daemon (aka Classic LOCKSS Daemon) before 1.77.3 performs post-Unicode normalization, which may allow bypass of i...
CVE-2023-36878MEDIUM4.3Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2023-6134MEDIUM5.4A flaw was found in Keycloak that prevents certain schemes in redirects, but permits them if a wildcard is appended to t...
CVE-2023-0248MEDIUM5.3An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certa...
CVE-2023-49786MEDIUM5.9Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1,...
CVE-2023-50713MEDIUM5Speckle Server provides server, frontend, 3D viewer, and other JavaScript utilities for the Speckle 3D data platform. A ...
CVE-2023-50710MEDIUM4.3Hono is a web framework written in TypeScript. Prior to version 3.11.7, clients may override named path parameter values...
CVE-2023-49157MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andreas Münch Mult...
CVE-2023-49152MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Labs64 Credit Trac...
CVE-2023-49151MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Simple Calendar Si...
CVE-2023-5769MEDIUM6.1 A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious act...
CVE-2023-49860MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs WP Project ...
CVE-2023-49842MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpexpertsio Rocket...
CVE-2023-49150MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CurrencyRate.Today...
CVE-2023-49149MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CurrencyRate.Today...
CVE-2023-48780MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in EnigmaWeb WP Catal...
CVE-2023-48771MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bruno "Aesqe" Babi...
CVE-2023-48770MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nima Saberi Aparat...
CVE-2023-48767MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Raghu Goriya MyTub...
CVE-2023-48756MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetBloc...
CVE-2023-6595MEDIUM5.3In WhatsUp Gold versions released before 2023.1, an API endpoint was found to be missing an authentication mechanism. It...
CVE-2023-6368MEDIUM5.3In WhatsUp Gold versions released before 2023.1, an API endpoint was found to be missing an authentication mechanism. It...
CVE-2023-6367MEDIUM5.4 In WhatsUp Gold versions released before 2023.1, a stored cross-site scripting (XSS) vulnerability has been identified....
CVE-2023-6366MEDIUM5.4 In WhatsUp Gold versions released before 2023.1, a stored cross-site scripting (XSS) vulnerability has been identified....
CVE-2023-6365MEDIUM5.4 In WhatsUp Gold versions released before 2023.1, a stored cross-site scripting (XSS) vulnerability has been identified....

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now