2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49276 | MEDIUM | 6.1 | 0.5% | Dec 1, 2023 | Uptime Kuma is an open source self-hosted monitoring tool. In affected versions the Google Analytics element in vulnerab... |
| CVE-2023-48314 | MEDIUM | 6.1 | 0.4% | Dec 1, 2023 | Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with Collabo... |
| CVE-2023-46746 | MEDIUM | 4.3 | 0.4% | Dec 1, 2023 | PostHog provides open-source product analytics, session recording, feature flagging and A/B testing that you can self-ho... |
| CVE-2023-44381 | MEDIUM | 4.9 | 0.5% | Dec 1, 2023 | October is a Content Management System (CMS) and web platform to assist with development workflow. An authenticated back... |
| CVE-2023-49277 | MEDIUM | 6.1 | 0.5% | Dec 1, 2023 | dpaste is an open source pastebin application written in Python using the Django framework. A security vulnerability has... |
| CVE-2023-46174 | MEDIUM | 5.4 | 0.4% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2023-43021 | MEDIUM | 5.3 | 0.7% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed te... |
| CVE-2023-42022 | MEDIUM | 5.4 | 0.4% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2023-42019 | MEDIUM | 5.9 | 0.5% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper inp... |
| CVE-2023-42009 | MEDIUM | 5.4 | 0.4% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2023-43015 | MEDIUM | 5.4 | 0.4% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2023-26024 | MEDIUM | 6.5 | 0.2% | Dec 1, 2023 | IBM Planning Analytics on Cloud Pak for Data 4.0 could allow an attacker on a shared network to obtain sensitive informa... |
| CVE-2023-42006 | MEDIUM | 5.5 | 0.2% | Dec 1, 2023 | IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information ... |
| CVE-2023-6461 | MEDIUM | 6.1 | 0.5% | Dec 1, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository viliusle/minipaint prior to 4.14.0. |
| CVE-2023-28895 | MEDIUM | 6.8 | 0.3% | Dec 1, 2023 | The password for access to the debugging console of the PoWer Controller chip (PWC) of the MIB3 infotainment is hard-cod... |
| CVE-2023-6033 | MEDIUM | 5.4 | 0.6% | Dec 1, 2023 | Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 pr... |
| CVE-2023-5915 | MEDIUM | 5.3 | 1.2% | Dec 1, 2023 | A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corpor... |
| CVE-2023-4912 | MEDIUM | 6.5 | 0.6% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 10.5 before 16.4.3, all versions starting... |
| CVE-2023-4317 | MEDIUM | 4.3 | 0.4% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting fro... |
| CVE-2023-3964 | MEDIUM | 4.3 | 0.5% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions starting from 13.2 before 16.4.3, all versions starting fr... |
| CVE-2023-3949 | MEDIUM | 5.3 | 0.5% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions starting from 11.3 before 16.4.3, all versions starting fr... |
| CVE-2023-3443 | MEDIUM | 4.3 | 0.4% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions starting from 12.1 before 16.4.3, all versions starting fr... |
| CVE-2023-42916 | MEDIUM | 6.5 | 18.0% | Nov 30, 2023 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2,... |
| CVE-2023-48894 | MEDIUM | 6.5 | 0.6% | Nov 30, 2023 | Incorrect Access Control vulnerability in jshERP V3.3 allows attackers to obtain sensitive information via the doFilter ... |
| CVE-2023-6442 | MEDIUM | 5.4 | 0.6% | Nov 30, 2023 | A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been declared as problematic. ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now