2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-42640MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42639MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42638MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42637MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42636MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42635MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42634MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42633MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42632MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-42631MEDIUM5.5In validationtools, there is a possible missing permission check. This could lead to local information disclosure with n...
CVE-2023-1715MEDIUM5.4 A logic error when using mb_strpos() to check for potential XSS payload in Bitrix24 22.0.300 allows attackers to bypass...
CVE-2023-4198MEDIUM6.5Improper Access Control in Dolibarr ERP CRM <= v17.0.3 allows an unauthorized authenticated user to read a database tabl...
CVE-2023-5516MEDIUM5.3 Poorly constructed webap requests and URI components with special characters trigger unhandled errors and exceptions, d...
CVE-2023-5515MEDIUM5.3 The responses for web queries with certain parameters disclose internal path of resources. This information can be used...
CVE-2023-5514MEDIUM5.3 The response messages received from the eSOMS report generation using certain parameter queries with full file path can...
CVE-2023-2622MEDIUM4.3 Authenticated clients can read arbitrary files on the MAIN Computer system using the remote procedure call (RPC) of the...
CVE-2023-2621MEDIUM6.5 The McFeeder server (distributed as part of SSW package), is susceptible to an arbitrary file write vulnerability on th...
CVE-2023-5896MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.4.0-4.
CVE-2023-5895MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVE-2023-5894MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pkp/ojs prior to 3.3.0-16.
CVE-2023-5892MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVE-2023-5891MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVE-2023-5890MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
CVE-2023-47099MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability in the Create Virtual Server in Virtualmin 7.7 allows remote attackers...
CVE-2023-47098MEDIUM4.8A Stored Cross-Site Scripting (XSS) vulnerability in the Manage Extra Admins under Administration Options in Virtualmin ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now