2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40178 | MEDIUM | 5.3 | 0.4% | Aug 23, 2023 | Node-SAML is a SAML library not dependent on any frameworks that runs in Node. The lack of checking of current timestamp... |
| CVE-2023-40176 | MEDIUM | 5.4 | 78.9% | Aug 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any registered ... |
| CVE-2023-20234 | MEDIUM | 6 | 0.2% | Aug 23, 2023 | A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to create a file or overw... |
| CVE-2023-20230 | MEDIUM | 5.4 | 0.3% | Aug 23, 2023 | A vulnerability in the restricted security domain implementation of Cisco Application Policy Infrastructure Controller (... |
| CVE-2023-20200 | MEDIUM | 6.3 | 0.5% | Aug 23, 2023 | A vulnerability in the Simple Network Management Protocol (SNMP) service of Cisco FXOS Software for Firepower 4100 Serie... |
| CVE-2023-20168 | MEDIUM | 6.5 | 0.2% | Aug 23, 2023 | A vulnerability in TACACS+ and RADIUS remote authentication for Cisco NX-OS Software could allow an unauthenticated, loc... |
| CVE-2023-20115 | MEDIUM | 5.4 | 0.4% | Aug 23, 2023 | A vulnerability in the SFTP server implementation for Cisco Nexus 3000 Series Switches and 9000 Series Switches in stand... |
| CVE-2023-39441 | MEDIUM | 5.9 | 0.6% | Aug 23, 2023 | Apache Airflow SMTP Provider before 1.3.0, Apache Airflow IMAP Provider before 3.3.0, and Apache Airflow before 2.7.0 ar... |
| CVE-2023-32509 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Rolf van Gelder Order Your Posts Manually plugin <= 2.2.5 ... |
| CVE-2023-32505 | MEDIUM | 4.8 | 0.4% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Arshid Easy Hide Login plugin <= 1.0.7 versions. |
| CVE-2023-32300 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Yoast Yoast SEO: Local plugin <= 14.8 versions. |
| CVE-2023-28994 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in UX-themes Flatsome plugin <= 3.16.8 versions. |
| CVE-2023-32499 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Tony Zeoli, Tony Hayes Radio Station by netmix® – Manage a... |
| CVE-2023-32498 | MEDIUM | 4.8 | 0.4% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Easy Form team Easy Form by AYS plugin <= 1.2.0 versio... |
| CVE-2023-32497 | MEDIUM | 4.8 | 0.3% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Supersoju Block Referer Spam plugin <= 1.1.9.4 version... |
| CVE-2023-32496 | MEDIUM | 4.8 | 0.4% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Bill Minozzi Block Bad Bots and Stop Bad Bots Crawlers... |
| CVE-2023-32236 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Booking Ultra Pro Booking Ultra Pro Appointments Booking C... |
| CVE-2023-4042 | MEDIUM | 5.5 | 0.3% | Aug 23, 2023 | A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisor... |
| CVE-2023-32119 | MEDIUM | 6.1 | 0.3% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPO365 | Mail Integration for Office 365 / Outlook plugin ... |
| CVE-2023-41104 | MEDIUM | 6.5 | 0.5% | Aug 23, 2023 | libvmod-digest before 1.0.3, as used in Varnish Enterprise 6.0.x before 6.0.11r5, has an out-of-bounds memory access dur... |
| CVE-2023-41100 | MEDIUM | 5.3 | 0.5% | Aug 23, 2023 | An issue was discovered in the hcaptcha (aka hCaptcha for EXT:form) extension before 2.1.2 for TYPO3. It fails to check ... |
| CVE-2023-41098 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | An issue was discovered in MISP 2.4.174. In app/Controller/DashboardsController.php, a reflected XSS issue exists via th... |
| CVE-2023-40282 | MEDIUM | 5.4 | 0.3% | Aug 23, 2023 | Improper authentication vulnerability in Rakuten WiFi Pocket all versions allows a network-adjacent attacker to log in t... |
| CVE-2023-39986 | MEDIUM | 5.5 | 0.2% | Aug 23, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Out-of-bounds Read vulnerability in Hitachi EH-VIEW (Designer) allows local attackers to... |
| CVE-2023-40370 | MEDIUM | 5.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7.1 runtime is vulnerable to information disclosure of script conten... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now