2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-30534MEDIUM4.3Cacti is an open source operational monitoring and fault management framework. There are two instances of insecure deser...
CVE-2023-39515MEDIUM4.8Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39514MEDIUM5.4Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39513MEDIUM5.4Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39512MEDIUM4.8Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39510MEDIUM4.8Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39366MEDIUM4.8Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored...
CVE-2023-39360MEDIUM6.1Cacti is an open source operational monitoring and fault management framework.Affected versions are subject to a Stored ...
CVE-2023-41317MEDIUM5.9The Apollo Router is a configurable, high-performance graph router written in Rust to run a federated supergraph that us...
CVE-2023-39598MEDIUM6.1Cross Site Scripting vulnerability in IceWarp Corporation WebClient v.10.2.1 allows a remote attacker to execute arbitra...
CVE-2023-35124MEDIUM4.3An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automati...
CVE-2023-34994MEDIUM4.3An improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Au...
CVE-2023-34317MEDIUM6.5An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Softw...
CVE-2023-32271MEDIUM6.5An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automati...
CVE-2023-4778MEDIUM5.5Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-41107MEDIUM5.4TEF portal 2023-07-17 is vulnerable to a persistent cross site scripting (XSS)attack.
CVE-2023-4480MEDIUM5.5 Due to an out-of-date dependency in the “Fusion File Manager” component accessible through the admin panel, an attacker...
CVE-2023-20897MEDIUM5.3Salt masters prior to 3005.2 or 3006.2 contain a DOS in minion return. After receiving several bad packets on the reques...
CVE-2023-38569MEDIUM5.4Stored cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote authenticated attacker to execut...
CVE-2023-36492MEDIUM6.1Reflected cross-site scripting vulnerability in SHIRASAGI prior to v1.18.0 allows a remote unauthenticated attacker to e...
CVE-2023-40705MEDIUM5.4Stored cross-site scripting vulnerability in Map setting page of VI Web Client prior to 7.9.6 allows a remote authentica...
CVE-2023-40535MEDIUM5.4Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authentic...
CVE-2023-39938MEDIUM6.1Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to...
CVE-2023-38574MEDIUM6.1Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users t...
CVE-2023-41908MEDIUM5.3Cerebrate before 1.15 lacks the Secure attribute for the session cookie.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now