2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0092 | MEDIUM | 4.9 | 0.6% | Jan 31, 2025 | An authenticated user who has read access to the juju controller model, may construct a remote request to download an ar... |
| CVE-2023-6195 | MEDIUM | 4.3 | 0.3% | Jan 31, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.5 prior to 16.9.7, starting from 16... |
| CVE-2023-37413 | MEDIUM | 5.3 | 0.3% | Jan 29, 2025 | IBM Aspera Faspex 5.0.0 through 5.0.10 could disclose sensitive username information due to an observable response discr... |
| CVE-2023-37412 | MEDIUM | 4.9 | 0.3% | Jan 29, 2025 | IBM Aspera Faspex 5.0.0 through 5.0.10 could allow a privileged user to make system changes without proper access contro... |
| CVE-2023-33838 | MEDIUM | 4.9 | 0.2% | Jan 29, 2025 | IBM Security Verify Governance 10.0.2 Identity Manager uses a one-way cryptographic hash against an input that should ... |
| CVE-2023-35017 | MEDIUM | 5.9 | 0.2% | Jan 29, 2025 | IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtaine... |
| CVE-2023-52292 | MEDIUM | 5.4 | 0.2% | Jan 27, 2025 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to stored cross-site scripti... |
| CVE-2023-47159 | MEDIUM | 4.3 | 0.3% | Jan 27, 2025 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enume... |
| CVE-2023-46187 | MEDIUM | 5.4 | 0.3% | Jan 27, 2025 | IBM InfoSphere Master Data Management 11.6, 12.0, and 14.0 is vulnerable to stored cross-site scripting. This vulnerabil... |
| CVE-2023-50946 | MEDIUM | 6.5 | 0.3% | Jan 26, 2025 | IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have acc... |
| CVE-2023-50945 | MEDIUM | 5.5 | 0.1% | Jan 26, 2025 | IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user. |
| CVE-2023-38009 | MEDIUM | 5.9 | 0.2% | Jan 26, 2025 | IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to... |
| CVE-2023-38271 | MEDIUM | 6.5 | 0.3% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, ... |
| CVE-2023-38012 | MEDIUM | 5.3 | 0.5% | Jan 25, 2025 | IBM Cloud Pak System 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could allow a remote att... |
| CVE-2023-50309 | MEDIUM | 5.4 | 0.2% | Jan 23, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to stored cross-site scripting. This vulne... |
| CVE-2023-32340 | MEDIUM | 5.4 | 0.2% | Jan 23, 2025 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to cross-site scripting. This vulnerabilit... |
| CVE-2023-37012 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37011 | MEDIUM | 6.3 | 0.5% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37010 | MEDIUM | 6.3 | 0.5% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37009 | MEDIUM | 6.3 | 0.5% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37008 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain a buffer overflow in the ASN.1 deserialization function of the S1AP handler. This ... |
| CVE-2023-37007 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37006 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37005 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
| CVE-2023-37004 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contain an assertion that can be remotely triggered via a malformed ASN.1 packet over the ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now