2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47110 | MEDIUM | 5.3 | 0.4% | Nov 9, 2023 | blockreassurance adds an information block aimed at offering helpful information to reassure customers that their store ... |
| CVE-2023-46743 | MEDIUM | 4.3 | 0.5% | Nov 9, 2023 | application-collabora is an integration of Collabora Online in XWiki. As part of the application use cases, depending on... |
| CVE-2023-36688 | MEDIUM | 4.8 | 0.4% | Nov 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Mann Simple Site Verify plugin <= 1.0.7 versio... |
| CVE-2023-6039 | MEDIUM | 5.5 | 0.3% | Nov 9, 2023 | A use-after-free flaw was found in lan78xx_disconnect in drivers/net/usb/lan78xx.c in the network sub-component, net/usb... |
| CVE-2023-47373 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in DRAGON FAMILY Line 13.6.1 allows remote attackers to send malicious notifications... |
| CVE-2023-47372 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in UPDATESALON C-LOUNGE Line 13.6.1 allows remote attackers to send malicious notifi... |
| CVE-2023-47370 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in bluetrick Line 13.6.1 allows remote attackers to send malicious notifications to ... |
| CVE-2023-47368 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in taketorinoyu Line 13.6.1 allows remote attackers to send malicious notifications ... |
| CVE-2023-41138 | MEDIUM | 6.7 | 0.2% | Nov 9, 2023 | The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands with elevated permissio... |
| CVE-2023-47369 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in best_training_member Line 13.6.1 allows remote attackers to send malicious notifi... |
| CVE-2023-47367 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in platinum clinic Line 13.6.1 allows remote attackers to send malicious notificatio... |
| CVE-2023-47366 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in craft_members Line 13.6.1 allows remote attackers to send malicious notifications... |
| CVE-2023-47365 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in Lil.OFF-PRICE STORE Line 13.6.1 allows remote attackers to send malicious notific... |
| CVE-2023-47364 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in nagaoka taxi Line 13.6.1 allows remote attackers to send malicious notifications ... |
| CVE-2023-47363 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | The leakage of channel access token in F.B.P members Line 13.6.1 allows remote attackers to send malicious notifications... |
| CVE-2023-47616 | MEDIUM | 4.6 | 0.3% | Nov 9, 2023 | A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Telit Cinterion BGS5, Teli... |
| CVE-2023-47615 | MEDIUM | 5.5 | 0.2% | Nov 9, 2023 | A CWE-526: Exposure of Sensitive Information Through Environmental Variables vulnerability exists in Telit Cinterion BGS... |
| CVE-2023-47612 | MEDIUM | 6.1 | 0.3% | Nov 9, 2023 | A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinte... |
| CVE-2023-4218 | MEDIUM | 5 | 0.4% | Nov 9, 2023 | In Eclipse IDE versions < 2023-09 (4.29) some files with xml content are parsed vulnerable against all sorts of XXE atta... |
| CVE-2023-47488 | MEDIUM | 6.1 | 1.2% | Nov 9, 2023 | Cross Site Scripting vulnerability in Combodo iTop v.3.1.0-2-11973 allows a local attacker to obtain sensitive informati... |
| CVE-2023-46492 | MEDIUM | 6.1 | 0.6% | Nov 9, 2023 | Cross Site Scripting vulnerability in MLDB.ai v.2017.04.17.0 allows a remote attacker to execute arbitrary code via a cr... |
| CVE-2023-20902 | MEDIUM | 6.5 | 0.4% | Nov 9, 2023 | A timing condition in Harbor 2.6.x and below, Harbor 2.7.2 and below, Harbor 2.8.2 and below, and Harbor 1.10.17 and be... |
| CVE-2023-37790 | MEDIUM | 5.4 | 0.5% | Nov 9, 2023 | Jaspersoft Clarity PPM version 14.3.0.298 was discovered to contain an arbitrary file upload vulnerability via the Profi... |
| CVE-2023-37533 | MEDIUM | 6.1 | 0.4% | Nov 9, 2023 | HCL Connections is vulnerable to reflected cross-site scripting (XSS) where an attacker may leverage these issues to exe... |
| CVE-2023-45079 | MEDIUM | 6.7 | 0.2% | Nov 8, 2023 | A memory leakage vulnerability was reported in the NvmramSmm SMM driver that may allow a local attacker with elevated pr... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now