2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-51448HIGH8.8Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi)...
CVE-2023-50259MEDIUM5.3Medusa is an automatic video library manager for TV shows. Versions prior to 1.0.19 are vulnerable to unauthenticated bl...
CVE-2023-50258MEDIUM5.3Medusa is an automatic video library manager for TV shows. Versions prior to 1.0.19 are vulnerable to unauthenticated bl...
CVE-2023-50254HIGH7.8Deepin Linux's default document reader `deepin-reader` software suffers from a serious vulnerability in versions prior t...
CVE-2023-50250MEDIUM6.1Cacti is an open source operational monitoring and fault management framework. A reflection cross-site scripting vulnera...
CVE-2023-49792CRITICAL9.8Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versio...
CVE-2023-49791MEDIUM5.4Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versio...
CVE-2023-49790MEDIUM4.3The Nextcloud iOS Files app allows users of iOS to interact with Nextcloud, a self-hosted productivity platform. Prior t...
CVE-2023-49088MEDIUM4.8Cacti is an open source operational monitoring and fault management framework. The fix applied for CVE-2023-39515 in ver...
CVE-2023-49085HIGH8.8Cacti provides an operational monitoring and fault management framework. In versions 1.2.25 and prior, it is possible to...
CVE-2023-48704HIGH7.5ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports i...
CVE-2023-48670HIGH7.8 Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the i...
CVE-2023-45957MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the component admin/AdminRequestSqlController.php of thirty bees be...
CVE-2023-45165MEDIUM5.5IBM AIX 7.2 and 7.3 could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a ...
CVE-2023-42465HIGH7Sudo before 1.9.15 might allow row hammer attacks (for authentication bypass or privilege escalation) because applicatio...
CVE-2023-42017CRITICAL9.8IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validat...
CVE-2023-51661HIGH8.6Wasmer is a WebAssembly runtime that enables containers to run anywhere: from Desktop to the Cloud, Edge and even the br...
CVE-2023-7076MEDIUM6.1A vulnerability was found in slawkens MyAAC up to 0.8.13. It has been declared as problematic. This vulnerability affect...
CVE-2023-7075MEDIUM6.1A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as problema...
CVE-2023-50569Rejected reason: DO NOT USE THIS CVE RECORD. Consult IDs: CVE-2023-50250. Reason: This record is a reservation duplicate...
CVE-2023-49391HIGH7.5An issue was discovered in free5GC version 3.3.0, allows remote attackers to execute arbitrary code and cause a denial o...
CVE-2023-49356HIGH7.5A stack buffer overflow vulnerability in MP3Gain v1.6.2 allows an attacker to cause a denial of service via the WriteMP3...
CVE-2023-43741HIGH7A time-of-check-time-of-use race condition vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.2...
CVE-2023-43116HIGH7.8A symbolic link following vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.22.5 allows the bu...
CVE-2023-7059MEDIUM5.4A vulnerability was found in SourceCodester School Visitor Log e-Book 1.0. It has been rated as problematic. Affected by...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now