2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-47110MEDIUM5.3blockreassurance adds an information block aimed at offering helpful information to reassure customers that their store ...
CVE-2023-46743MEDIUM4.3application-collabora is an integration of Collabora Online in XWiki. As part of the application use cases, depending on...
CVE-2023-36688MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Mann Simple Site Verify plugin <= 1.0.7 versio...
CVE-2023-6039MEDIUM5.5A use-after-free flaw was found in lan78xx_disconnect in drivers/net/usb/lan78xx.c in the network sub-component, net/usb...
CVE-2023-47373MEDIUM6.5The leakage of channel access token in DRAGON FAMILY Line 13.6.1 allows remote attackers to send malicious notifications...
CVE-2023-47372MEDIUM6.5The leakage of channel access token in UPDATESALON C-LOUNGE Line 13.6.1 allows remote attackers to send malicious notifi...
CVE-2023-47370MEDIUM6.5The leakage of channel access token in bluetrick Line 13.6.1 allows remote attackers to send malicious notifications to ...
CVE-2023-47368MEDIUM6.5The leakage of channel access token in taketorinoyu Line 13.6.1 allows remote attackers to send malicious notifications ...
CVE-2023-41138MEDIUM6.7The AppsAnywhere macOS client-privileged helper can be tricked into executing arbitrary commands with elevated permissio...
CVE-2023-47369MEDIUM6.5The leakage of channel access token in best_training_member Line 13.6.1 allows remote attackers to send malicious notifi...
CVE-2023-47367MEDIUM6.5The leakage of channel access token in platinum clinic Line 13.6.1 allows remote attackers to send malicious notificatio...
CVE-2023-47366MEDIUM6.5The leakage of channel access token in craft_members Line 13.6.1 allows remote attackers to send malicious notifications...
CVE-2023-47365MEDIUM6.5The leakage of channel access token in Lil.OFF-PRICE STORE Line 13.6.1 allows remote attackers to send malicious notific...
CVE-2023-47364MEDIUM6.5The leakage of channel access token in nagaoka taxi Line 13.6.1 allows remote attackers to send malicious notifications ...
CVE-2023-47363MEDIUM6.5The leakage of channel access token in F.B.P members Line 13.6.1 allows remote attackers to send malicious notifications...
CVE-2023-47616MEDIUM4.6A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Telit Cinterion BGS5, Teli...
CVE-2023-47615MEDIUM5.5A CWE-526: Exposure of Sensitive Information Through Environmental Variables vulnerability exists in Telit Cinterion BGS...
CVE-2023-47612MEDIUM6.1A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Telit Cinterion BGS5, Telit Cinte...
CVE-2023-4218MEDIUM5In Eclipse IDE versions < 2023-09 (4.29) some files with xml content are parsed vulnerable against all sorts of XXE atta...
CVE-2023-47488MEDIUM6.1Cross Site Scripting vulnerability in Combodo iTop v.3.1.0-2-11973 allows a local attacker to obtain sensitive informati...
CVE-2023-46492MEDIUM6.1Cross Site Scripting vulnerability in MLDB.ai v.2017.04.17.0 allows a remote attacker to execute arbitrary code via a cr...
CVE-2023-20902MEDIUM6.5A timing condition in Harbor 2.6.x and below, Harbor 2.7.2 and below,  Harbor 2.8.2 and below, and Harbor 1.10.17 and be...
CVE-2023-37790MEDIUM5.4Jaspersoft Clarity PPM version 14.3.0.298 was discovered to contain an arbitrary file upload vulnerability via the Profi...
CVE-2023-37533MEDIUM6.1HCL Connections is vulnerable to reflected cross-site scripting (XSS) where an attacker may leverage these issues to exe...
CVE-2023-45079MEDIUM6.7A memory leakage vulnerability was reported in the NvmramSmm SMM driver that may allow a local attacker with elevated pr...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now