2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30534 | MEDIUM | 4.3 | 2.6% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. There are two instances of insecure deser... |
| CVE-2023-39515 | MEDIUM | 4.8 | 0.7% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39514 | MEDIUM | 5.4 | 0.7% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39513 | MEDIUM | 5.4 | 0.8% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39512 | MEDIUM | 4.8 | 0.7% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39510 | MEDIUM | 4.8 | 0.7% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39366 | MEDIUM | 4.8 | 0.8% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-39360 | MEDIUM | 6.1 | 0.8% | Sep 5, 2023 | Cacti is an open source operational monitoring and fault management framework.Affected versions are subject to a Stored ... |
| CVE-2023-41317 | MEDIUM | 5.9 | 0.7% | Sep 5, 2023 | The Apollo Router is a configurable, high-performance graph router written in Rust to run a federated supergraph that us... |
| CVE-2023-39598 | MEDIUM | 6.1 | 1.4% | Sep 5, 2023 | Cross Site Scripting vulnerability in IceWarp Corporation WebClient v.10.2.1 allows a remote attacker to execute arbitra... |
| CVE-2023-35124 | MEDIUM | 4.3 | 0.5% | Sep 5, 2023 | An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automati... |
| CVE-2023-34994 | MEDIUM | 4.3 | 0.7% | Sep 5, 2023 | An improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Au... |
| CVE-2023-34317 | MEDIUM | 6.5 | 0.8% | Sep 5, 2023 | An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Softw... |
| CVE-2023-32271 | MEDIUM | 6.5 | 0.9% | Sep 5, 2023 | An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automati... |
| CVE-2023-4778 | MEDIUM | 5.5 | 0.3% | Sep 5, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. |
| CVE-2023-41107 | MEDIUM | 5.4 | 0.4% | Sep 5, 2023 | TEF portal 2023-07-17 is vulnerable to a persistent cross site scripting (XSS)attack. |
| CVE-2023-4480 | MEDIUM | 5.5 | 0.6% | Sep 5, 2023 | Due to an out-of-date dependency in the “Fusion File Manager” component accessible through the admin panel, an attacker... |
| CVE-2023-20897 | MEDIUM | 5.3 | 1.0% | Sep 5, 2023 | Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the reques... |
| CVE-2023-38569 | MEDIUM | 5.4 | 0.4% | Sep 5, 2023 | Stored cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to execut... |
| CVE-2023-36492 | MEDIUM | 6.1 | 0.4% | Sep 5, 2023 | Reflected cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote unauthenticated attacker to e... |
| CVE-2023-40705 | MEDIUM | 5.4 | 0.4% | Sep 5, 2023 | Stored cross-site scripting vulnerability in Map setting page of VI Web Client prior to 7.9.6 allows a remote authentica... |
| CVE-2023-40535 | MEDIUM | 5.4 | 0.4% | Sep 5, 2023 | Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authentic... |
| CVE-2023-39938 | MEDIUM | 6.1 | 0.4% | Sep 5, 2023 | Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to... |
| CVE-2023-38574 | MEDIUM | 6.1 | 0.4% | Sep 5, 2023 | Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users t... |
| CVE-2023-41908 | MEDIUM | 5.3 | 0.4% | Sep 5, 2023 | Cerebrate before 1.15 lacks the Secure attribute for the session cookie. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now