2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-38255MEDIUM6.1 A potential attacker with or without (cookie theft) access to the device would be able to include malic...
CVE-2023-4806MEDIUM5.9A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has...
CVE-2023-4527MEDIUM6.5A flaw was found in glibc. When the getaddrinfo function is called with the AF_UNSPEC address family and the system is c...
CVE-2023-42371MEDIUM5.4Cross Site Scripting vulnerability in Summernote Rich Text Editor v.0.8.18 and before allows a remote attacker to execut...
CVE-2023-42253MEDIUM6.1Code-Projects Vehicle Management 1.0 is vulnerable to Cross Site Scripting (XSS) in Add Accounts via Invoice No, To, and...
CVE-2023-43114MEDIUM5.5An issue was discovered in Qt before 5.15.16, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3 on Windows. When u...
CVE-2023-5031MEDIUM6.5A vulnerability was found in OpenRapid RapidCMS 1.3.1. It has been declared as critical. Affected by this vulnerability ...
CVE-2023-5028MEDIUM4.6A vulnerability, which was classified as problematic, has been found in China Unicom TEWA-800G 4.16L.04_CT2015_Yueme. Af...
CVE-2023-5026MEDIUM6.1A vulnerability classified as problematic has been found in Tongda OA 11.10. Affected is an unknown function of the file...
CVE-2023-5025MEDIUM5.4A vulnerability was found in KOHA up to 23.05.03. It has been declared as problematic. This vulnerability affects unknow...
CVE-2023-5024MEDIUM4.8A vulnerability was found in Planno 23.04.04. It has been classified as problematic. This affects an unknown part of the...
CVE-2023-5021MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester AC Repair and Services System 1.0. Aff...
CVE-2023-38040MEDIUM6.1A reflected XSS vulnerability exists in Revive Adserver 5.4.1 and earlier versions..
CVE-2023-5015MEDIUM6.1A vulnerability was found in UCMS 1.4.7. It has been classified as problematic. Affected is an unknown function of the f...
CVE-2023-5013MEDIUM5.4A vulnerability has been found in Pluck CMS 4.7.18 and classified as problematic. This vulnerability affects unknown cod...
CVE-2023-41157MEDIUM5.4Multiple stored cross-site scripting (XSS) vulnerabilities in Usermin 2.000 allow remote attackers to inject arbitrary w...
CVE-2023-5001MEDIUM5.4The Horizontal scrolling announcement plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'horizontal-...
CVE-2023-4994MEDIUM6.4The Allow PHP in Posts and Pages plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and incl...
CVE-2023-39777MEDIUM5.4A cross-site scripting (XSS) vulnerability in the Admin Control Panel of vBulletin 5.7.5 and 6.0.0 allows attackers to e...
CVE-2023-41436MEDIUM5.4Cross Site Scripting vulnerability in CSZCMS v.1.3.0 allows a local attacker to execute arbitrary code via a crafted scr...
CVE-2023-36160MEDIUM5.5An issue was discovered in Qubo Smart Plug10A version HSP02_01_01_14_SYSTEM-10 A, allows local attackers to gain sensiti...
CVE-2023-41626MEDIUM4.8Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface.
CVE-2023-36727MEDIUM6.1Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2023-42442MEDIUM5.3JumpServer is an open source bastion host and a professional operation and maintenance security audit system. Starting i...
CVE-2023-42439MEDIUM6.5GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. A S...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now