2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-4910MEDIUM5.5A flaw was found In 3Scale Admin Portal. If a user logs out from the personal tokens page and then presses the back butt...
CVE-2023-3909MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.3 before 16.3.6, all versions start...
CVE-2023-3246MEDIUM4.3An issue has been discovered in GitLab EE/CE affecting all versions starting before 16.3.6, all versions starting from 1...
CVE-2023-5831MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.0 before 16.3.6, all versions start...
CVE-2023-5825MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions start...
CVE-2023-5090MEDIUM5.5A flaw was found in KVM. An improper check in svm_set_x2apic_msr_interception() may allow direct access to host x2apic m...
CVE-2023-47185MEDIUM6.1Unauth. Stored Cross-Site Scripting (XSS) vulnerability in gVectors Team Comments — wpDiscuz plugin <= 7.6.11 versions.
CVE-2023-47184MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Proper Fraction LLC. Admin Bar & Dashboard Access Cont...
CVE-2023-47177MEDIUM5.4Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yakir Sitbon, Ariel Klikstein Linker plugin <= 1.2.1 v...
CVE-2023-46824MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Om Ak Solutions Slick Popup: Contact Form 7 Popup Plug...
CVE-2023-46822MEDIUM6.1Unauth. Reflected Cross-Site Scripting') vulnerability in Visser Labs Store Exporter for WooCommerce – Export Products, ...
CVE-2023-46783MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Bright Plugins Pre-Orders for WooCommerce plugin...
CVE-2023-46782MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Chris Yee MomentoPress for Momento360 plugin <= ...
CVE-2023-23702MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions.
CVE-2023-28794MEDIUM6.5Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Privilege Abuse. This issue affects Zs...
CVE-2023-42669MEDIUM6.5A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC...
CVE-2023-4625MEDIUM5.3Improper Restriction of Excessive Authentication Attempts vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F/i...
CVE-2023-32840MEDIUM6.5In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio...
CVE-2023-32839MEDIUM6.7In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalati...
CVE-2023-32838MEDIUM6.7In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalati...
CVE-2023-32836MEDIUM6.7In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of p...
CVE-2023-32835MEDIUM6.7In keyinstall, there is a possible memory corruption due to type confusion. This could lead to local escalation of privi...
CVE-2023-32834MEDIUM6.7In secmem, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege...
CVE-2023-32825MEDIUM5.5In bluethooth service, there is a possible out of bounds reads due to improper input validation. This could lead to loca...
CVE-2023-32818MEDIUM6.7In vdec, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now