2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40532 | MEDIUM | 4.3 | 0.6% | Sep 27, 2023 | Path traversal vulnerability in Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with author or higher privilege ... |
| CVE-2023-40450 | MEDIUM | 5.5 | 0.2% | Sep 27, 2023 | The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. An app may bypass Gatekeeper check... |
| CVE-2023-40441 | MEDIUM | 6.5 | 0.9% | Sep 27, 2023 | A resource exhaustion issue was addressed with improved input validation. This issue is fixed in iOS 17 and iPadOS 17, m... |
| CVE-2023-40435 | MEDIUM | 5.5 | 0.2% | Sep 27, 2023 | This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 15. An app may be able to access App... |
| CVE-2023-40429 | MEDIUM | 5.5 | 0.6% | Sep 27, 2023 | A permissions issue was addressed with improved validation. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchO... |
| CVE-2023-40428 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved handling of caches. This issue is fixed in iOS 17 and iPadOS 17. An app may be abl... |
| CVE-2023-40426 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. An app may be ab... |
| CVE-2023-40424 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, watchOS 10, macOS Sonoma 14. ... |
| CVE-2023-40422 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14. An app may be able to cau... |
| CVE-2023-40420 | MEDIUM | 6.5 | 1.2% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and ... |
| CVE-2023-40418 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | An authentication issue was addressed with improved state management. This issue is fixed in watchOS 10. An Apple Watch ... |
| CVE-2023-40417 | MEDIUM | 5.4 | 0.8% | Sep 27, 2023 | A window management issue was addressed with improved state management. This issue is fixed in Safari 17, iOS 17 and iPa... |
| CVE-2023-40410 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.6, tvOS 17, ... |
| CVE-2023-40406 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, macOS Ventura 13.6, macOS Sono... |
| CVE-2023-40403 | MEDIUM | 6.5 | 1.1% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and ... |
| CVE-2023-40402 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. An app may be ab... |
| CVE-2023-40399 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, watchOS 10,... |
| CVE-2023-40391 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in tvOS 17, iOS 17 and iPadOS 17, macOS Sonom... |
| CVE-2023-40388 | MEDIUM | 4.3 | 0.6% | Sep 27, 2023 | A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. Safari ... |
| CVE-2023-40333 | MEDIUM | 6.1 | 0.3% | Sep 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Qode Interactive Bridge Core plugin <= 3.0.9 versions. |
| CVE-2023-40330 | MEDIUM | 6.1 | 0.3% | Sep 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Milan Petrovic GD Security Headers plugin <= 1.6.1 version... |
| CVE-2023-40049 | MEDIUM | 5.3 | 0.7% | Sep 27, 2023 | In WS_FTP Server version prior to 8.8.2, an unauthenticated user could enumerate files under the 'WebServiceHost' d... |
| CVE-2023-40048 | MEDIUM | 6.5 | 0.4% | Sep 27, 2023 | In WS_FTP Server version prior to 8.8.2, the WS_FTP Server Manager interface was missing cross-site request forgery... |
| CVE-2023-40047 | MEDIUM | 4.8 | 0.4% | Sep 27, 2023 | In WS_FTP Server version prior to 8.8.2, a stored cross-site scripting (XSS) vulnerability exists in WS_FTP Server's ... |
| CVE-2023-40045 | MEDIUM | 6.1 | 0.9% | Sep 27, 2023 | In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a reflected cross-site scripting (XSS) vulnerability exists in ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now