2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38255 | MEDIUM | 6.1 | 0.3% | Sep 18, 2023 | A potential attacker with or without (cookie theft) access to the device would be able to include malic... |
| CVE-2023-4806 | MEDIUM | 5.9 | 1.4% | Sep 18, 2023 | A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has... |
| CVE-2023-4527 | MEDIUM | 6.5 | 1.5% | Sep 18, 2023 | A flaw was found in glibc. When the getaddrinfo function is called with the AF_UNSPEC address family and the system is c... |
| CVE-2023-42371 | MEDIUM | 5.4 | 0.5% | Sep 18, 2023 | Cross Site Scripting vulnerability in Summernote Rich Text Editor v.0.8.18 and before allows a remote attacker to execut... |
| CVE-2023-42253 | MEDIUM | 6.1 | 0.4% | Sep 18, 2023 | Code-Projects Vehicle Management 1.0 is vulnerable to Cross Site Scripting (XSS) in Add Accounts via Invoice No, To, and... |
| CVE-2023-43114 | MEDIUM | 5.5 | 0.2% | Sep 18, 2023 | An issue was discovered in Qt before 5.15.16, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3 on Windows. When u... |
| CVE-2023-5031 | MEDIUM | 6.5 | 0.4% | Sep 18, 2023 | A vulnerability was found in OpenRapid RapidCMS 1.3.1. It has been declared as critical. Affected by this vulnerability ... |
| CVE-2023-5028 | MEDIUM | 4.6 | 0.4% | Sep 17, 2023 | A vulnerability, which was classified as problematic, has been found in China Unicom TEWA-800G 4.16L.04_CT2015_Yueme. Af... |
| CVE-2023-5026 | MEDIUM | 6.1 | 0.5% | Sep 17, 2023 | A vulnerability classified as problematic has been found in Tongda OA 11.10. Affected is an unknown function of the file... |
| CVE-2023-5025 | MEDIUM | 5.4 | 0.5% | Sep 17, 2023 | A vulnerability was found in KOHA up to 23.05.03. It has been declared as problematic. This vulnerability affects unknow... |
| CVE-2023-5024 | MEDIUM | 4.8 | 0.6% | Sep 17, 2023 | A vulnerability was found in Planno 23.04.04. It has been classified as problematic. This affects an unknown part of the... |
| CVE-2023-5021 | MEDIUM | 6.1 | 0.3% | Sep 17, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester AC Repair and Services System 1.0. Aff... |
| CVE-2023-38040 | MEDIUM | 6.1 | 2.0% | Sep 17, 2023 | A reflected XSS vulnerability exists in Revive Adserver 5.4.1 and earlier versions.. |
| CVE-2023-5015 | MEDIUM | 6.1 | 0.4% | Sep 17, 2023 | A vulnerability was found in UCMS 1.4.7. It has been classified as problematic. Affected is an unknown function of the f... |
| CVE-2023-5013 | MEDIUM | 5.4 | 0.5% | Sep 16, 2023 | A vulnerability has been found in Pluck CMS 4.7.18 and classified as problematic. This vulnerability affects unknown cod... |
| CVE-2023-41157 | MEDIUM | 5.4 | 0.4% | Sep 16, 2023 | Multiple stored cross-site scripting (XSS) vulnerabilities in Usermin 2.000 allow remote attackers to inject arbitrary w... |
| CVE-2023-5001 | MEDIUM | 5.4 | 0.3% | Sep 16, 2023 | The Horizontal scrolling announcement plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'horizontal-... |
| CVE-2023-4994 | MEDIUM | 6.4 | 0.7% | Sep 16, 2023 | The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and incl... |
| CVE-2023-39777 | MEDIUM | 5.4 | 0.4% | Sep 16, 2023 | A cross-site scripting (XSS) vulnerability in the Admin Control Panel of vBulletin 5.7.5 and 6.0.0 allows attackers to e... |
| CVE-2023-41436 | MEDIUM | 5.4 | 0.5% | Sep 16, 2023 | Cross Site Scripting vulnerability in CSZCMS v.1.3.0 allows a local attacker to execute arbitrary code via a crafted scr... |
| CVE-2023-36160 | MEDIUM | 5.5 | 0.2% | Sep 16, 2023 | An issue was discovered in Qubo Smart Plug10A version HSP02_01_01_14_SYSTEM-10 A, allows local attackers to gain sensiti... |
| CVE-2023-41626 | MEDIUM | 4.8 | 0.3% | Sep 15, 2023 | Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface. |
| CVE-2023-36727 | MEDIUM | 6.1 | 0.9% | Sep 15, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2023-42442 | MEDIUM | 5.3 | 55.9% | Sep 15, 2023 | JumpServer is an open source bastion host and a professional operation and maintenance security audit system. Starting i... |
| CVE-2023-42439 | MEDIUM | 6.5 | 0.8% | Sep 15, 2023 | GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. A S... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now