2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40627 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | A reflected XSS vulnerability was discovered in the LivingWord component for Joomla. |
| CVE-2023-25642 | MEDIUM | 6.5 | 0.5% | Dec 14, 2023 | There is a buffer overflow vulnerability in some ZTE mobile internet producsts. Due to insufficient validation of tcp p... |
| CVE-2023-25650 | MEDIUM | 6.5 | 0.6% | Dec 14, 2023 | There is an arbitrary file download vulnerability in ZXCLOUD iRAI. Since the backend does not escape special strings or... |
| CVE-2023-5630 | MEDIUM | 4.9 | 0.3% | Dec 14, 2023 | A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a privileged user to instal... |
| CVE-2023-5629 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of infor... |
| CVE-2023-41618 | MEDIUM | 6.1 | 0.5% | Dec 14, 2023 | Emlog Pro v2.1.14 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /adm... |
| CVE-2023-21751 | MEDIUM | 6.5 | 1.0% | Dec 14, 2023 | Azure DevOps Server Spoofing Vulnerability |
| CVE-2023-49646 | MEDIUM | 6.5 | 0.4% | Dec 13, 2023 | Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial o... |
| CVE-2023-43585 | MEDIUM | 6.5 | 0.6% | Dec 13, 2023 | Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticate... |
| CVE-2023-43583 | MEDIUM | 4.9 | 0.6% | Dec 13, 2023 | Cryptographic issues Zoom Mobile App for Android, Zoom Mobile App for iOS, and Zoom SDKs for Android and iOS before vers... |
| CVE-2023-41621 | MEDIUM | 6.1 | 1.1% | Dec 13, 2023 | A Cross Site Scripting (XSS) vulnerability was discovered in Emlog Pro v2.1.14 via the component /admin/store.php. |
| CVE-2023-47623 | MEDIUM | 6.1 | 0.4% | Dec 13, 2023 | Scrypted is a home video integration and automation platform. In versions 0.55.0 and prior, a reflected cross-site scrip... |
| CVE-2023-47620 | MEDIUM | 6.1 | 0.5% | Dec 13, 2023 | Scrypted is a home video integration and automation platform. In versions 0.55.0 and prior, a reflected cross-site scrip... |
| CVE-2023-6775 | MEDIUM | 6.1 | 0.6% | Dec 13, 2023 | A vulnerability was found in CodeAstro POS and Inventory Management System 1.0. It has been classified as problematic. T... |
| CVE-2023-50443 | MEDIUM | 4.6 | 0.3% | Dec 13, 2023 | Encrypted disks created by PRIMX CRYHOD for Windows before Q.2020.4 (ANSSI qualification submission) or CRYHOD for Windo... |
| CVE-2023-50442 | MEDIUM | 5.5 | 0.1% | Dec 13, 2023 | Encrypted folders created by PRIMX ZONECENTRAL through 2023.5 can be modified by a local attacker (with appropriate priv... |
| CVE-2023-50440 | MEDIUM | 5.5 | 0.2% | Dec 13, 2023 | ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission); ZED! for Windows bef... |
| CVE-2023-50439 | MEDIUM | 5.3 | 0.5% | Dec 13, 2023 | ZED containers produced by PRIMX ZED! for Windows before Q.2020.3 (ANSSI qualification submission), ZED! for Windows bef... |
| CVE-2023-50268 | MEDIUM | 5.5 | 0.4% | Dec 13, 2023 | jq is a command-line JSON processor. Version 1.7 is vulnerable to stack-based buffer overflow in builds using decNumber.... |
| CVE-2023-50248 | MEDIUM | 6.5 | 0.6% | Dec 13, 2023 | CKAN is an open-source data management system for powering data hubs and data portals. Starting in version 2.0.0 and pri... |
| CVE-2023-50246 | MEDIUM | 5.5 | 0.5% | Dec 13, 2023 | jq is a command-line JSON processor. Version 1.7 is vulnerable to heap-based buffer overflow. Version 1.7.1 contains a p... |
| CVE-2023-49878 | MEDIUM | 4.3 | 0.7% | Dec 13, 2023 | IBM System Storage Virtualization Engine TS7700 3957-VEC, 3948-VED and 3957-VEC could allow a remote attacker to obtain ... |
| CVE-2023-49877 | MEDIUM | 4.3 | 0.8% | Dec 13, 2023 | IBM System Storage Virtualization Engine TS7700 3957-VEC, 3948-VED and 3957-VEC could allow a remote authenticated user ... |
| CVE-2023-47624 | MEDIUM | 6.5 | 0.8% | Dec 13, 2023 | Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, any user (regardless of their... |
| CVE-2023-47619 | MEDIUM | 6.5 | 0.6% | Dec 13, 2023 | Audiobookshelf is a self-hosted audiobook and podcast server. In versions 2.4.3 and prior, users with the update permiss... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now