2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47071 | MEDIUM | 5.5 | 0.4% | Nov 17, 2023 | Adobe After Effects version 24.0.2 (and earlier) and 23.6 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2023-5445 | MEDIUM | 5.4 | 0.4% | Nov 17, 2023 | An open redirect vulnerability in ePolicy Orchestrator prior to 5.10.0 CP1 Update 2, allows a remote low privileged use... |
| CVE-2023-44326 | MEDIUM | 5.5 | 0.4% | Nov 17, 2023 | Adobe Dimension versions 3.4.9 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2023-44325 | MEDIUM | 5.5 | 0.3% | Nov 17, 2023 | Adobe Animate versions 23.0.2 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclo... |
| CVE-2023-47797 | MEDIUM | 6.1 | 0.7% | Nov 17, 2023 | Reflected cross-site scripting (XSS) vulnerability on a content page’s edit page in Liferay Portal 7.4.3.94 through 7.4.... |
| CVE-2023-38324 | MEDIUM | 5.3 | 0.7% | Nov 17, 2023 | An issue was discovered in OpenNDS before 10.1.2. It allows users to skip the splash page sequence (and directly authent... |
| CVE-2023-38314 | MEDIUM | 6.5 | 0.9% | Nov 17, 2023 | An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a NULL pointer dereference in preauthent... |
| CVE-2023-47283 | MEDIUM | 4.9 | 1.2% | Nov 17, 2023 | Directory traversal vulnerability in CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrati... |
| CVE-2023-42428 | MEDIUM | 6.5 | 1.3% | Nov 17, 2023 | Directory traversal vulnerability in CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrati... |
| CVE-2023-48649 | MEDIUM | 5.4 | 0.6% | Nov 17, 2023 | Concrete CMS before 8.5.13 and 9.x before 9.2.2 allows stored XSS on the Admin page via an uploaded file name. |
| CVE-2023-48237 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. In affected versions when shifting lines in operator pending mode and us... |
| CVE-2023-48236 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. When using the z= command, the user may overflow the count with values l... |
| CVE-2023-48235 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. When parsing relative ex addresses one may unintentionally cause an over... |
| CVE-2023-48234 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. When getting the count for a normal mode z command, it may overflow for ... |
| CVE-2023-48233 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. If the count after the :s command is larger than what fits into a (signe... |
| CVE-2023-48232 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. A floating point exception may occur when calculating the line offset fo... |
| CVE-2023-48231 | MEDIUM | 4.3 | 0.7% | Nov 16, 2023 | Vim is an open source command line text editor. When closing a window, vim may try to access already freed window struct... |
| CVE-2023-47025 | MEDIUM | 5.5 | 0.3% | Nov 16, 2023 | An issue in Free5gc v.3.3.0 allows a local attacker to cause a denial of service via the free5gc-compose component. |
| CVE-2023-48222 | MEDIUM | 5.4 | 0.4% | Nov 16, 2023 | Rundeck is an open source automation service with a web console, command line tools and a WebAPI. In affected versions a... |
| CVE-2023-47642 | MEDIUM | 4.3 | 0.5% | Nov 16, 2023 | Zulip is an open-source team collaboration tool. It was discovered by the Zulip development team that active users who h... |
| CVE-2023-47112 | MEDIUM | 4.3 | 0.5% | Nov 16, 2023 | Rundeck is an open source automation service with a web console, command line tools and a WebAPI. In affected versions a... |
| CVE-2023-40314 | MEDIUM | 6.1 | 0.4% | Nov 16, 2023 | Cross-site scripting in bootstrap.jsp in multiple versions of OpenNMS Meridian and Horizon allows an attacker access ... |
| CVE-2023-46213 | MEDIUM | 4.8 | 0.5% | Nov 16, 2023 | In Splunk Enterprise versions below 9.0.7 and 9.1.2, ineffective escaping in the “Show syntax Highlighted” feature can r... |
| CVE-2023-39926 | MEDIUM | 6.1 | 0.4% | Nov 16, 2023 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Acurax Under Construction / Maintenance Mode from Acurax plug... |
| CVE-2023-36026 | MEDIUM | 4.3 | 0.8% | Nov 16, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now