2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6482MEDIUM5.2Use of encryption key derived from static information in Synaptics Fingerprint Driver allows an attacker to set up a T...
CVE-2023-52187HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Thomas Maier Image Source Control Lite – Sho...
CVE-2023-6470Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER.
CVE-2023-29081MEDIUM5.5A vulnerability has been reported in Suite Setups built with versions prior to InstallShield 2023 R2. This vulnerability...
CVE-2023-6291HIGH7.1A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of otherwise explicitly...
CVE-2023-6919HIGH7.5Path Traversal: '/../filedir' vulnerability in Biges Safe Life Technologies Electronics Inc. VGuard allows Absolute Path...
CVE-2023-48129MEDIUM5.4An issue in kimono-oldnew mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ...
CVE-2023-48135MEDIUM5.4An issue in mimasaka_farm mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ...
CVE-2023-48133MEDIUM5.4An issue in angel coffee mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o...
CVE-2023-48132MEDIUM5.4An issue in kosei entertainment esportsstudioLegends mini-app on Line v13.6.1 allows attackers to send crafted malicious...
CVE-2023-48131MEDIUM5.4An issue in CHIGASAKI BAKERY mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leaka...
CVE-2023-48130MEDIUM5.4An issue in GINZA CAFE mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of ...
CVE-2023-48128MEDIUM5.4An issue in UNITED BOXING GYM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leak...
CVE-2023-48127MEDIUM5.4An issue in myGAKUYA mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of th...
CVE-2023-48126MEDIUM5.4An issue in Luxe Beauty Clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via lea...
CVE-2023-38323CRITICAL9.8An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the status path script entry in the configuration...
CVE-2023-38319CRITICAL9.8An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allo...
CVE-2023-38318CRITICAL9.8An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the gateway FQDN entry in the configuration file,...
CVE-2023-38317CRITICAL9.8An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the network interface name entry in the configura...
CVE-2023-6159MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions from 12.7 prior to 16.6.6, 16.7 prior to 16.7.4, and...
CVE-2023-5612MEDIUM5.3An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16....
CVE-2023-5933MEDIUM5.4An issue has been discovered in GitLab CE/EE affecting all versions after 13.7 before 16.6.6, 16.7 prior to 16.7.4, and ...
CVE-2023-51833HIGH8.1A command injection issue in TRENDnet TEW-411BRPplus v.2.07_eu that allows a local attacker to execute arbitrary code vi...
CVE-2023-52251HIGH8.8An issue discovered in provectus kafka-ui 0.4.0 through 0.7.1 allows remote attackers to execute arbitrary code via the ...
CVE-2023-52046MEDIUM4.8Cross Site Scripting vulnerability (XSS) in webmin v.2.105 and earlier allows a remote attacker to execute arbitrary cod...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now