2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38973 | MEDIUM | 5.4 | 0.3% | Aug 25, 2023 | A stored cross-site scripting (XSS) vulnerability in the Add Tag function of Badaso v2.9.7 allows attackers to execute a... |
| CVE-2023-39700 | MEDIUM | 6.1 | 1.4% | Aug 25, 2023 | IceWarp Mail Server v10.4.5 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the color... |
| CVE-2023-4508 | MEDIUM | 5.5 | 0.3% | Aug 24, 2023 | A user able to control file input to Gerbv, between versions 2.4.0 and 2.10.0, can cause a crash and cause denial-of-ser... |
| CVE-2023-40030 | MEDIUM | 6.1 | 0.8% | Aug 24, 2023 | Cargo downloads a Rust project’s dependencies and compiles the project. Starting in Rust 1.60.0 and prior to 1.72, Cargo... |
| CVE-2023-39521 | MEDIUM | 4.8 | 0.5% | Aug 24, 2023 | Tuleap is an open source suite to improve management of software developments and collaboration. In Tuleap Community Edi... |
| CVE-2023-39519 | MEDIUM | 4.9 | 0.6% | Aug 24, 2023 | Cloud Explorer Lite is an open source cloud management platform. Prior to version 1.4.0, there is a risk of sensitive in... |
| CVE-2023-38508 | MEDIUM | 4.3 | 0.5% | Aug 24, 2023 | Tuleap is an open source suite to improve management of software developments and collaboration. In Tuleap Community Edi... |
| CVE-2023-39801 | MEDIUM | 4.6 | 0.4% | Aug 24, 2023 | A lack of exception handling in the Renault Easy Link Multimedia System Software Version 283C35519R allows attackers to ... |
| CVE-2023-40708 | MEDIUM | 5.3 | 0.4% | Aug 24, 2023 | The File Transfer Protocol (FTP) port is open by default in the SNAP PAC S1 Firmware version R10.3b. This could allow an... |
| CVE-2023-34973 | MEDIUM | 5.3 | 0.4% | Aug 24, 2023 | An insufficient entropy vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerabilit... |
| CVE-2023-34972 | MEDIUM | 6.5 | 0.2% | Aug 24, 2023 | A cleartext transmission of sensitive information vulnerability has been reported to affect QNAP operating systems. If e... |
| CVE-2023-40877 | MEDIUM | 5.4 | 0.4% | Aug 24, 2023 | DedeCMS up to and including 5.7.110 was discovered to contain a cross-site scripting (XSS) vulnerability at /dede/freeli... |
| CVE-2023-40876 | MEDIUM | 5.4 | 0.4% | Aug 24, 2023 | DedeCMS up to and including 5.7.110 was discovered to contain a cross-site scripting (XSS) vulnerability at /dede/freeli... |
| CVE-2023-40875 | MEDIUM | 5.4 | 0.4% | Aug 24, 2023 | DedeCMS up to and including 5.7.110 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at /de... |
| CVE-2023-40874 | MEDIUM | 5.4 | 0.4% | Aug 24, 2023 | DedeCMS up to and including 5.7.110 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at /de... |
| CVE-2023-40371 | MEDIUM | 5.5 | 0.1% | Aug 24, 2023 | IBM AIX 7.2, 7.3, VIOS 3.1's OpenSSH implementation could allow a non-privileged local user to access files outside of t... |
| CVE-2023-32516 | MEDIUM | 6.1 | 0.4% | Aug 24, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in GloriaFood Restaurant Menu – Food Ordering System – Table ... |
| CVE-2023-32511 | MEDIUM | 6.1 | 0.4% | Aug 24, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Booking Ultra Pro Booking Ultra Pro Appointments Booking C... |
| CVE-2023-32510 | MEDIUM | 6.1 | 0.4% | Aug 24, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Rolf van Gelder Order Your Posts Manually plugin <= 2.2.5 ... |
| CVE-2023-4230 | MEDIUM | 5.3 | 0.4% | Aug 24, 2023 | A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, which has t... |
| CVE-2023-4229 | MEDIUM | 4.7 | 0.3% | Aug 24, 2023 | A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, potentially... |
| CVE-2023-4228 | MEDIUM | 4.3 | 0.3% | Aug 24, 2023 | A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, where the s... |
| CVE-2023-3704 | MEDIUM | 5.3 | 0.5% | Aug 24, 2023 | The vulnerability exists in CP-Plus DVR due to an improper input validation within the web-based management interface of... |
| CVE-2023-4227 | MEDIUM | 6.5 | 0.3% | Aug 24, 2023 | A vulnerability has been identified in the ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, which c... |
| CVE-2023-36317 | MEDIUM | 4.8 | 0.5% | Aug 23, 2023 | Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 1.0 allows attack... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now