2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-38969MEDIUM5.4Cross Site Scripting vulnerabiltiy in Badaso v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted pa...
CVE-2023-39578MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in the Create function of Zenario CMS v9.4 allows attackers to execute...
CVE-2023-39348MEDIUM5.3Spinnaker is an open source, multi-cloud continuous delivery platform. Log output when updating GitHub status is imprope...
CVE-2023-39709MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows atta...
CVE-2023-39562MEDIUM5.5GPAC v2.3-DEV-rev449-g5948e4f70-master was discovered to contain a heap-use-after-free via the gf_bs_align function at b...
CVE-2023-39062MEDIUM6.1Cross Site Scripting vulnerability in Spipu HTML2PDF before v.5.2.8 allows a remote attacker to execute arbitrary code v...
CVE-2023-39708MEDIUM6.1A stored cross-site scripting (XSS) vulnerability in Free and Open Source Inventory Management System v1.0 allows attack...
CVE-2023-40755MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "theme" parameter of preview.php in PHPJabbers Callback Widge...
CVE-2023-40753MEDIUM5.4There is a Cross Site Scripting (XSS) vulnerability in the message parameter of index.php in PHPJabbers Ticket Support S...
CVE-2023-40752MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Make an Offer W...
CVE-2023-40751MEDIUM6.1PHPJabbers Fundraising Script v1.0 is vulnerable to Cross Site Scripting (XSS) via the "action" parameter of index.php.
CVE-2023-40750MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Yacht Listing S...
CVE-2023-4561MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository omeka/omeka-s prior to 4.0.4.
CVE-2023-4560MEDIUM6.5Improper Authorization of Index Containing Sensitive Information in GitHub repository omeka/omeka-s prior to 4.0.4.
CVE-2023-26272MEDIUM5.3IBM Security Guardium Data Encryption (IBM Guardium Cloud Key Manager (GCKM) 1.10.3)) could allow a remote attacker to o...
CVE-2023-33852MEDIUM5.4IBM Security Guardium 11.4 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements...
CVE-2023-30437MEDIUM5.3IBM Security Guardium 11.3, 11.4, and 11.5 could allow an unauthorized user to enumerate usernames by sending a speciall...
CVE-2023-30436MEDIUM5.4IBM Security Guardium 11.3, 11.4, and 11.5 is vulnerable to cross-site scripting. This vulnerability allows users to emb...
CVE-2023-30435MEDIUM5.4IBM Security Guardium 11.3, 11.4, and 11.5 is vulnerable to stored cross-site scripting. This vulnerability allows users...
CVE-2023-4555MEDIUM6.1A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. Affected...
CVE-2023-4547MEDIUM6.1A vulnerability was found in SPA-Cart eCommerce CMS 1.9.0.3. It has been rated as problematic. Affected by this issue is...
CVE-2023-4546MEDIUM6.5A vulnerability was found in Byzoro Smart S85F Management Platform up to 20230816. It has been declared as problematic. ...
CVE-2023-4544MEDIUM4.3A vulnerability was found in Byzoro Smart S85F Management Platform up to 20230809. It has been rated as problematic. Thi...
CVE-2023-39291MEDIUM4.9A vulnerability in the Connect Mobility Router component of MiVoice Connect through 9.6.2304.102 could allow an authenti...
CVE-2023-39290MEDIUM4.9A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through R19.3 SP3 (22.24.5800.0) could allow an a...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now