2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-6303MEDIUM4.8A vulnerability was found in CSZCMS 1.3.0. It has been classified as problematic. This affects an unknown part of the fi...
CVE-2023-6301MEDIUM6.1A vulnerability has been found in SourceCodester Best Courier Management System 1.0 and classified as problematic. Affec...
CVE-2023-6300MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Best Courier Management System 1.0. Af...
CVE-2023-49321MEDIUM5.3Certain WithSecure products allow a Denial of Service because scanning a crafted file takes a long time, and causes the ...
CVE-2023-6299MEDIUM6.5A vulnerability, which was classified as problematic, has been found in Apryse iText 8.0.1. This issue affects some unkn...
CVE-2023-6298MEDIUM6.5A vulnerability classified as problematic was found in Apryse iText 8.0.2. This vulnerability affects the function main ...
CVE-2023-6297MEDIUM6.1A vulnerability classified as problematic has been found in PHPGurukul Nipah Virus Testing Management System 1.0. This a...
CVE-2023-6296MEDIUM6.1A vulnerability was found in osCommerce 4. It has been rated as problematic. Affected by this issue is some unknown func...
CVE-2023-6277MEDIUM6.5An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to...
CVE-2023-48708MEDIUM6.5CodeIgniter Shield is an authentication and authorization provider for CodeIgniter 4. In affected versions successful lo...
CVE-2023-48707MEDIUM6.5CodeIgniter Shield is an authentication and authorization provider for CodeIgniter 4. The `secretKey` value is an import...
CVE-2023-6275MEDIUM6.1A vulnerability was found in TOTVS Fluig Platform 1.6.x/1.7.x/1.8.0/1.8.1. It has been rated as problematic. Affected by...
CVE-2023-33706MEDIUM6.5SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter t...
CVE-2023-49216MEDIUM5.4Usedesk before 1.7.57 allows profile stored XSS.
CVE-2023-49215MEDIUM6.1Usedesk before 1.7.57 allows filter reflected XSS.
CVE-2023-33202MEDIUM5.5Bouncy Castle for Java before 1.73 contains a potential Denial of Service (DoS) issue within the Bouncy Castle org.bounc...
CVE-2023-41811MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all...
CVE-2023-41810MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all...
CVE-2023-41792MEDIUM6.1Cross-Site Request Forgery (CSRF) vulnerability in Pandora FMS on all allows Cross-Site Scripting (XSS). This vulnerabil...
CVE-2023-41791MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all...
CVE-2023-41789MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all...
CVE-2023-41786MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pandora FMS on all allows File Discovery. Th...
CVE-2023-4595MEDIUM6.5An information exposure vulnerability has been found, the exploitation of which could allow a remote user to retrieve se...
CVE-2023-4594MEDIUM5.4Stored XSS vulnerability. This vulnerability could allow an attacker to store a malicious JavaScript payload via GET and...
CVE-2023-4593MEDIUM6.5Path traversal vulnerability whose exploitation could allow an authenticated remote user to bypass SecurityManager's int...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now