2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28482 | MEDIUM | 6.5 | 0.5% | Aug 14, 2023 | An issue was discovered in Tigergraph Enterprise 3.7.0. A single TigerGraph instance can host multiple graphs that are a... |
| CVE-2023-28480 | MEDIUM | 6.5 | 0.5% | Aug 14, 2023 | An issue was discovered in Tigergraph Enterprise 3.7.0. The TigerGraph platform allows users to define new User Defined ... |
| CVE-2023-40360 | MEDIUM | 5.5 | 0.4% | Aug 14, 2023 | QEMU through 8.0.4 accesses a NULL pointer in nvme_directive_receive in hw/nvme/ctrl.c because there is no check for whe... |
| CVE-2023-40312 | MEDIUM | 5.2 | 0.6% | Aug 14, 2023 | Multiple reflected XSS were found on different JSP files with unsanitized parameters in OpenMNS Horizon 31.0.8 and versi... |
| CVE-2023-40311 | MEDIUM | 4.8 | 0.7% | Aug 14, 2023 | Multiple stored XSS were found on different JSP files with unsanitized parameters in OpenMNS Horizon 31.0.8 and versions... |
| CVE-2023-40354 | MEDIUM | 6.5 | 0.3% | Aug 14, 2023 | An issue was discovered in MariaDB MaxScale before 23.02.3. A user enters an encrypted password on a "maxctrl create ser... |
| CVE-2023-28768 | MEDIUM | 6.5 | 0.3% | Aug 14, 2023 | Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30 firmware version V4.80(ACAR.1... |
| CVE-2023-30754 | MEDIUM | 6.1 | 0.4% | Aug 14, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt plugin... |
| CVE-2023-30752 | MEDIUM | 4.8 | 0.4% | Aug 14, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Silvia Pfeiffer and Andrew Nimmo External Videos plugi... |
| CVE-2023-30751 | MEDIUM | 4.8 | 0.4% | Aug 14, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in iControlWP Article Directory Redux plugin <= 1.0.2 ver... |
| CVE-2023-30749 | MEDIUM | 4.8 | 0.4% | Aug 14, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in ihomefinder Optima Express + MarketBoost IDX Plugin pl... |
| CVE-2023-30489 | MEDIUM | 6.1 | 0.4% | Aug 14, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution Email Subscription Popup plugin <=... |
| CVE-2023-28535 | MEDIUM | 6.1 | 0.4% | Aug 14, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Paytm Paytm Payment Donation plugin <= 2.2.0 versions. |
| CVE-2023-30483 | MEDIUM | 6.1 | 0.4% | Aug 14, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Kiboko Labs Watu Quiz plugin <= 3.3.9.2 versions. |
| CVE-2023-30477 | MEDIUM | 4.8 | 0.4% | Aug 14, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Essitco AFFILIATE Solution plugin <= 1.0 versions. |
| CVE-2023-30475 | MEDIUM | 6.1 | 0.4% | Aug 14, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Elliot Sowersby, RelyWP WooCommerce Affiliate Plugin – Cou... |
| CVE-2023-29097 | MEDIUM | 4.8 | 0.4% | Aug 14, 2023 | Auth. (author+) Stored Cross-Site Scripting (XSS) vulnerability in a3rev Software a3 Portfolio plugin <= 3.1.0 versions. |
| CVE-2023-37070 | MEDIUM | 4.8 | 0.5% | Aug 14, 2023 | Code Projects Hospital Information System 1.0 is vulnerable to Cross Site Scripting (XSS) |
| CVE-2023-4321 | MEDIUM | 6.1 | 0.6% | Aug 14, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.4.3. |
| CVE-2023-40305 | MEDIUM | 5.5 | 0.4% | Aug 14, 2023 | GNU indent 2.2.13 has a heap-based buffer overflow in search_brace in indent.c via a crafted file. |
| CVE-2023-40294 | MEDIUM | 6.5 | 0.6% | Aug 14, 2023 | libboron in Boron 2.0.8 has a heap-based buffer overflow in ur_parseBlockI at i_parse_blk.c. |
| CVE-2023-40293 | MEDIUM | 6.8 | 1.7% | Aug 14, 2023 | Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection ob... |
| CVE-2023-40292 | MEDIUM | 4.3 | 0.4% | Aug 14, 2023 | Harman Infotainment 20190525031613 and later discloses the IP address via CarPlay CTRL packets. |
| CVE-2023-40291 | MEDIUM | 6.8 | 0.4% | Aug 14, 2023 | Harman Infotainment 20190525031613 allows root access via SSH over a USB-to-Ethernet dongle with a password that is an i... |
| CVE-2023-3262 | MEDIUM | 6.7 | 0.3% | Aug 14, 2023 | The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier uses hard-coded credentials for all interactio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now