2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51448 | HIGH | 8.8 | 9.0% | Dec 22, 2023 | Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi)... |
| CVE-2023-50259 | MEDIUM | 5.3 | 0.6% | Dec 22, 2023 | Medusa is an automatic video library manager for TV shows. Versions prior to 1.0.19 are vulnerable to unauthenticated bl... |
| CVE-2023-50258 | MEDIUM | 5.3 | 0.7% | Dec 22, 2023 | Medusa is an automatic video library manager for TV shows. Versions prior to 1.0.19 are vulnerable to unauthenticated bl... |
| CVE-2023-50254 | HIGH | 7.8 | 2.1% | Dec 22, 2023 | Deepin Linux's default document reader `deepin-reader` software suffers from a serious vulnerability in versions prior t... |
| CVE-2023-50250 | MEDIUM | 6.1 | 1.3% | Dec 22, 2023 | Cacti is an open source operational monitoring and fault management framework. A reflection cross-site scripting vulnera... |
| CVE-2023-49792 | CRITICAL | 9.8 | 1.0% | Dec 22, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versio... |
| CVE-2023-49791 | MEDIUM | 5.4 | 0.6% | Dec 22, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versio... |
| CVE-2023-49790 | MEDIUM | 4.3 | 0.3% | Dec 22, 2023 | The Nextcloud iOS Files app allows users of iOS to interact with Nextcloud, a self-hosted productivity platform. Prior t... |
| CVE-2023-49088 | MEDIUM | 4.8 | 1.3% | Dec 22, 2023 | Cacti is an open source operational monitoring and fault management framework. The fix applied for CVE-2023-39515 in ver... |
| CVE-2023-49085 | HIGH | 8.8 | 84.6% | Dec 22, 2023 | Cacti provides an operational monitoring and fault management framework. In versions 1.2.25 and prior, it is possible to... |
| CVE-2023-48704 | HIGH | 7.5 | 0.5% | Dec 22, 2023 | ClickHouse is an open-source column-oriented database management system that allows generating analytical data reports i... |
| CVE-2023-48670 | HIGH | 7.8 | 0.2% | Dec 22, 2023 | Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the i... |
| CVE-2023-45957 | MEDIUM | 5.4 | 0.4% | Dec 22, 2023 | A stored cross-site scripting (XSS) vulnerability in the component admin/AdminRequestSqlController.php of thirty bees be... |
| CVE-2023-45165 | MEDIUM | 5.5 | 0.2% | Dec 22, 2023 | IBM AIX 7.2 and 7.3 could allow a non-privileged local user to exploit a vulnerability in the AIX SMB client to cause a ... |
| CVE-2023-42465 | HIGH | 7 | 0.5% | Dec 22, 2023 | Sudo before 1.9.15 might allow row hammer attacks (for authentication bypass or privilege escalation) because applicatio... |
| CVE-2023-42017 | CRITICAL | 9.8 | 1.1% | Dec 22, 2023 | IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validat... |
| CVE-2023-51661 | HIGH | 8.6 | 0.6% | Dec 22, 2023 | Wasmer is a WebAssembly runtime that enables containers to run anywhere: from Desktop to the Cloud, Edge and even the br... |
| CVE-2023-7076 | MEDIUM | 6.1 | 0.5% | Dec 22, 2023 | A vulnerability was found in slawkens MyAAC up to 0.8.13. It has been declared as problematic. This vulnerability affect... |
| CVE-2023-7075 | MEDIUM | 6.1 | 0.5% | Dec 22, 2023 | A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as problema... |
| CVE-2023-50569 | — | — | — | Dec 22, 2023 | Rejected reason: DO NOT USE THIS CVE RECORD. Consult IDs: CVE-2023-50250. Reason: This record is a reservation duplicate... |
| CVE-2023-49391 | HIGH | 7.5 | 1.0% | Dec 22, 2023 | An issue was discovered in free5GC version 3.3.0, allows remote attackers to execute arbitrary code and cause a denial o... |
| CVE-2023-49356 | HIGH | 7.5 | 0.7% | Dec 22, 2023 | A stack buffer overflow vulnerability in MP3Gain v1.6.2 allows an attacker to cause a denial of service via the WriteMP3... |
| CVE-2023-43741 | HIGH | 7 | 0.2% | Dec 22, 2023 | A time-of-check-time-of-use race condition vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.2... |
| CVE-2023-43116 | HIGH | 7.8 | 0.3% | Dec 22, 2023 | A symbolic link following vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.22.5 allows the bu... |
| CVE-2023-7059 | MEDIUM | 5.4 | 0.5% | Dec 22, 2023 | A vulnerability was found in SourceCodester School Visitor Log e-Book 1.0. It has been rated as problematic. Affected by... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now