2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-44341 | MEDIUM | 5.5 | 0.3% | Feb 29, 2024 | Adobe InDesign versions ID18.5 (and earlier) and ID17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulne... |
| CVE-2023-43769 | MEDIUM | 6.3 | 0.4% | Feb 29, 2024 | An issue was discovered in Couchbase Server through 7.1.4 before 7.1.5 and before 7.2.1. There are Unauthenticated RMI S... |
| CVE-2023-41165 | MEDIUM | 4.8 | 0.4% | Feb 29, 2024 | An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.38 before 3.7.39, 3.10.0 through 3.11.26... |
| CVE-2023-38372 | HIGH | 7.5 | 0.6% | Feb 29, 2024 | An unauthorized attacker who has obtained an IBM Watson IoT Platform 1.0 security authentication token can use it to imp... |
| CVE-2023-37531 | MEDIUM | 4.8 | 0.4% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37530 | MEDIUM | 5.4 | 0.3% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37529 | MEDIUM | 5.4 | 0.3% | Feb 29, 2024 | A cross-site scripting (XSS) vulnerability in the Web Reports component of HCL BigFix Platform can possibly allow an att... |
| CVE-2023-37495 | MEDIUM | 5.9 | 0.5% | Feb 29, 2024 | Internet passwords stored in Person documents in the Domino® Directory created using the "Add Person" action on the Peop... |
| CVE-2023-34198 | HIGH | 7.3 | 0.5% | Feb 29, 2024 | In Stormshield Network Security (SNS) 1.0.0 through 3.7.36 before 3.7.37, 3.8.0 through 3.11.24 before 3.11.25, 4.0.0 th... |
| CVE-2023-27151 | MEDIUM | 6.1 | 0.5% | Feb 29, 2024 | openCRX 5.2.0 was discovered to contain an HTML injection vulnerability for Search Criteria-Activity Number (in the Save... |
| CVE-2023-25926 | HIGH | 8.2 | 1.4% | Feb 29, 2024 | IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 is vulnerable to an XML External Entity Inje... |
| CVE-2023-25921 | HIGH | 8.8 | 1.1% | Feb 29, 2024 | IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 allows the attacker to upload or transfer f... |
| CVE-2023-5617 | MEDIUM | 5.3 | 0.4% | Feb 28, 2024 | Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.6, including 9.5.x and 8.3.x, d... |
| CVE-2023-49338 | HIGH | 7.5 | 0.6% | Feb 28, 2024 | Couchbase Server 7.1.x and 7.2.x before 7.2.4 does not require authentication for the /admin/stats and /admin/vitals end... |
| CVE-2023-45873 | MEDIUM | 6.5 | 0.7% | Feb 28, 2024 | An issue was discovered in Couchbase Server through 7.2.2. A data reader may cause a denial of service (application exis... |
| CVE-2023-45859 | HIGH | 7.6 | 0.5% | Feb 28, 2024 | In Hazelcast through 4.1.10, 4.2 through 4.2.8, 5.0 through 5.0.5, 5.1 through 5.1.7, 5.2 through 5.2.4, and 5.3 through... |
| CVE-2023-25925 | HIGH | 8.8 | 1.4% | Feb 28, 2024 | IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 could allow a remote authenticated attacker ... |
| CVE-2023-25922 | HIGH | 8.8 | 0.6% | Feb 28, 2024 | IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 allows the attacker to upload or transfer fi... |
| CVE-2023-52048 | MEDIUM | 4.7 | 0.3% | Feb 28, 2024 | RuoYi v4.7.8 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /system/notice/. |
| CVE-2023-52047 | HIGH | 8.8 | 0.2% | Feb 28, 2024 | Dedecms v5.7.112 was discovered to contain a Cross-Site Request Forgery (CSRF) in the file manager. |
| CVE-2023-51692 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | Missing Authorization vulnerability in CusRev Customer Reviews for WooCommerce.This issue affects Customer Reviews for W... |
| CVE-2023-51533 | MEDIUM | 6.1 | 0.2% | Feb 28, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Ecwid Ecommerce Ecwid Ecommerce Shopping Cart.This issue affects Ecwi... |
| CVE-2023-52226 | HIGH | 8.8 | 0.2% | Feb 28, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Advanced Flamingo.This issue affects Advanced Flamingo: from n/a thro... |
| CVE-2023-52223 | HIGH | 8.8 | 0.2% | Feb 28, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in MailerLite MailerLite – WooCommerce integration.This issue affects Ma... |
| CVE-2023-51683 | HIGH | 8.8 | 0.2% | Feb 28, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Scott Paterson Easy PayPal & Stripe Buy Now Button.This issue affects... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now