2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4910 | MEDIUM | 5.5 | 0.2% | Nov 6, 2023 | A flaw was found In 3Scale Admin Portal. If a user logs out from the personal tokens page and then presses the back butt... |
| CVE-2023-3909 | MEDIUM | 6.5 | 0.6% | Nov 6, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.3 before 16.3.6, all versions start... |
| CVE-2023-3246 | MEDIUM | 4.3 | 0.5% | Nov 6, 2023 | An issue has been discovered in GitLab EE/CE affecting all versions starting before 16.3.6, all versions starting from 1... |
| CVE-2023-5831 | MEDIUM | 5.3 | 0.5% | Nov 6, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.0 before 16.3.6, all versions start... |
| CVE-2023-5825 | MEDIUM | 6.5 | 0.6% | Nov 6, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.2 before 16.3.6, all versions start... |
| CVE-2023-5090 | MEDIUM | 5.5 | 0.2% | Nov 6, 2023 | A flaw was found in KVM. An improper check in svm_set_x2apic_msr_interception() may allow direct access to host x2apic m... |
| CVE-2023-47185 | MEDIUM | 6.1 | 0.4% | Nov 6, 2023 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in gVectors Team Comments — wpDiscuz plugin <= 7.6.11 versions. |
| CVE-2023-47184 | MEDIUM | 4.8 | 0.4% | Nov 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Proper Fraction LLC. Admin Bar & Dashboard Access Cont... |
| CVE-2023-47177 | MEDIUM | 5.4 | 0.3% | Nov 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yakir Sitbon, Ariel Klikstein Linker plugin <= 1.2.1 v... |
| CVE-2023-46824 | MEDIUM | 4.8 | 0.3% | Nov 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Om Ak Solutions Slick Popup: Contact Form 7 Popup Plug... |
| CVE-2023-46822 | MEDIUM | 6.1 | 0.4% | Nov 6, 2023 | Unauth. Reflected Cross-Site Scripting') vulnerability in Visser Labs Store Exporter for WooCommerce – Export Products, ... |
| CVE-2023-46783 | MEDIUM | 5.4 | 0.3% | Nov 6, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Bright Plugins Pre-Orders for WooCommerce plugin... |
| CVE-2023-46782 | MEDIUM | 5.4 | 0.3% | Nov 6, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Chris Yee MomentoPress for Momento360 plugin <= ... |
| CVE-2023-23702 | MEDIUM | 4.8 | 0.3% | Nov 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions. |
| CVE-2023-28794 | MEDIUM | 6.5 | 0.2% | Nov 6, 2023 | Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Privilege Abuse. This issue affects Zs... |
| CVE-2023-42669 | MEDIUM | 6.5 | 1.7% | Nov 6, 2023 | A vulnerability was found in Samba's "rpcecho" development server, a non-Windows RPC server used to test Samba's DCE/RPC... |
| CVE-2023-4625 | MEDIUM | 5.3 | 0.9% | Nov 6, 2023 | Improper Restriction of Excessive Authentication Attempts vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F/i... |
| CVE-2023-32840 | MEDIUM | 6.5 | 0.2% | Nov 6, 2023 | In modem CCCI, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2023-32839 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalati... |
| CVE-2023-32838 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In dpe, there is a possible out of bounds write due to a missing valid range checking. This could lead to local escalati... |
| CVE-2023-32836 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of p... |
| CVE-2023-32835 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In keyinstall, there is a possible memory corruption due to type confusion. This could lead to local escalation of privi... |
| CVE-2023-32834 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In secmem, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege... |
| CVE-2023-32825 | MEDIUM | 5.5 | 0.1% | Nov 6, 2023 | In bluethooth service, there is a possible out of bounds reads due to improper input validation. This could lead to loca... |
| CVE-2023-32818 | MEDIUM | 6.7 | 0.1% | Nov 6, 2023 | In vdec, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now