2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-30950MEDIUM5.9The foundry campaigns service was found to be vulnerable to an unauthenticated information disclosure in a rest endpoint
CVE-2023-20218MEDIUM6.1A vulnerability in web-based management interface of Cisco SPA500 Series Analog Telephone Adapters (ATAs) could allow an...
CVE-2023-20215MEDIUM5.3A vulnerability in the scanning engines of Cisco AsyncOS Software for Cisco Secure Web Appliance could allow an unauthen...
CVE-2023-20204MEDIUM5.4A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an ...
CVE-2023-20181MEDIUM6.1A vulnerability in the web-based management interface of Cisco Small Business SPA500 Series IP Phones could allow an una...
CVE-2023-3749MEDIUM5.5A local user could edit the VideoEdge configuration file and interfere with VideoEdge operation.
CVE-2023-39075MEDIUM4.6Renault Zoe EV 2021 automotive infotainment system versions 283C35202R to 283C35519R (builds 11.10.2021 to 16.01.2023) a...
CVE-2023-4145MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2.
CVE-2023-25524MEDIUM5.3 NVIDIA Omniverse Workstation Launcher for Windows and Linux contains a vulnerability in the authentication flow, where ...
CVE-2023-4138MEDIUM6.5Allocation of Resources Without Limits or Throttling in GitHub repository ikus060/rdiffweb prior to 2.8.0.
CVE-2023-4136MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CrafterCMS Engine ...
CVE-2023-4133MEDIUM5.5A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device i...
CVE-2023-4132MEDIUM5.5A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device in...
CVE-2023-3766MEDIUM5.9A vulnerability was discovered in the odoh-rs rust crate that stems from faulty logic during the parsing of encrypted qu...
CVE-2023-3348MEDIUM5.7The Wrangler command line tool  (<=wrangler@3.1.0 or <=wrangler@2.20.1) was affected by a directory traversal vulnerabil...
CVE-2023-3180MEDIUM6.5A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_h...
CVE-2023-39097MEDIUM5.4WebBoss.io CMS v3.7.0.1 contains a stored cross-site scripting (XSS) vulnerability.
CVE-2023-39096MEDIUM5.4WebBoss.io CMS v3.7.0.1 contains a stored Cross-Site Scripting (XSS) vulnerability due to lack of input validation and o...
CVE-2023-2754MEDIUM6.8The Cloudflare WARP client for Windows assigns loopback IPv4 addresses for the DNS Servers, since WARP acts as local DNS...
CVE-2023-28468MEDIUM6.5An issue was discovered in FvbServicesRuntimeDxe in Insyde InsydeH2O with kernel 5.0 through 5.5. The FvbServicesRuntime...
CVE-2023-37559MEDIUM6.5After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network co...
CVE-2023-37558MEDIUM6.5After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network co...
CVE-2023-37557MEDIUM6.5After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted remote com...
CVE-2023-37556MEDIUM6.5In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network c...
CVE-2023-37555MEDIUM6.5In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now