2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-49276MEDIUM6.1Uptime Kuma is an open source self-hosted monitoring tool. In affected versions the Google Analytics element in vulnerab...
CVE-2023-48314MEDIUM6.1Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with Collabo...
CVE-2023-46746MEDIUM4.3PostHog provides open-source product analytics, session recording, feature flagging and A/B testing that you can self-ho...
CVE-2023-44381MEDIUM4.9October is a Content Management System (CMS) and web platform to assist with development workflow. An authenticated back...
CVE-2023-49277MEDIUM6.1dpaste is an open source pastebin application written in Python using the Django framework. A security vulnerability has...
CVE-2023-46174MEDIUM5.4 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2023-43021MEDIUM5.3 IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed te...
CVE-2023-42022MEDIUM5.4 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2023-42019MEDIUM5.9 IBM InfoSphere Information Server 11.7 could allow a remote attacker to cause a denial of service due to improper inp...
CVE-2023-42009MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2023-43015MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2023-26024MEDIUM6.5IBM Planning Analytics on Cloud Pak for Data 4.0 could allow an attacker on a shared network to obtain sensitive informa...
CVE-2023-42006MEDIUM5.5IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information ...
CVE-2023-6461MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository viliusle/minipaint prior to 4.14.0.
CVE-2023-28895MEDIUM6.8The password for access to the debugging console of the PoWer Controller chip (PWC) of the MIB3 infotainment is hard-cod...
CVE-2023-6033MEDIUM5.4Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 pr...
CVE-2023-5915MEDIUM5.3A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corpor...
CVE-2023-4912MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 10.5 before 16.4.3, all versions starting...
CVE-2023-4317MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting fro...
CVE-2023-3964MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 13.2 before 16.4.3, all versions starting fr...
CVE-2023-3949MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 11.3 before 16.4.3, all versions starting fr...
CVE-2023-3443MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 12.1 before 16.4.3, all versions starting fr...
CVE-2023-42916MEDIUM6.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2,...
CVE-2023-48894MEDIUM6.5Incorrect Access Control vulnerability in jshERP V3.3 allows attackers to obtain sensitive information via the doFilter ...
CVE-2023-6442MEDIUM5.4A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been declared as problematic. ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now