2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-37217MEDIUM5.3 Tadiran Telecom Aeonix - CWE-204: Observable Response Discrepancy
CVE-2023-37216MEDIUM6.5 AnaSystem SensMini M4 – Using the configuration tool, an authenticated user can cause Denial of Service for the dev...
CVE-2023-32226MEDIUM6.5 Sysaid - CWE-552: Files or Directories Accessible to External Parties -  Authenticated users may exfiltrate files fro...
CVE-2023-2314MEDIUM6.5Insufficient data validation in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to bypass nav...
CVE-2023-2311MEDIUM6.5Insufficient policy enforcement in File System API in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to ...
CVE-2023-38988MEDIUM4.3An issue in the delete function in the OaNotifyController class of jeesite v1.2.6 allows authenticated attackers to arbi...
CVE-2023-3488MEDIUM5.5Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stac...
CVE-2023-38685MEDIUM4.3Discourse is an open source discussion platform. Prior to version 3.0.6 of the `stable` branch and version 3.1.0.beta7 o...
CVE-2023-38498MEDIUM6.5Discourse is an open source discussion platform. Prior to version 3.0.6 of the `stable` branch and version 3.1.0.beta7 o...
CVE-2023-37906MEDIUM4.3Discourse is an open source discussion platform. Prior to version 3.0.6 of the `stable` branch and version 3.1.0.beta7 o...
CVE-2023-37467MEDIUM5.4Discourse is an open source discussion platform. Prior to version 3.1.0.beta7 of the `beta` and `tests-passed` branches,...
CVE-2023-31935MEDIUM4.8Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensiti...
CVE-2023-31934MEDIUM4.8Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensiti...
CVE-2023-2685MEDIUM6.3A vulnerability was found in AO-OPC server versions mentioned above. As the directory information for the service entry ...
CVE-2023-3990MEDIUM6.1A vulnerability classified as problematic has been found in Mingsoft MCMS up to 5.3.1. This affects an unknown part of t...
CVE-2023-3989MEDIUM6.1A vulnerability was found in SourceCodester Jewelry Store System 1.0. It has been rated as problematic. Affected by this...
CVE-2023-3986MEDIUM4.8A vulnerability was found in SourceCodester Simple Online Mens Salon Management System 1.0 and classified as problematic...
CVE-2023-3977MEDIUM4.3Several plugins for WordPress by Inisev are vulnerable to Cross-Site Request Forgery to unauthorized installation of plu...
CVE-2023-38599MEDIUM6.5A logic issue was addressed with improved state management. This issue is fixed in Safari 16.6, watchOS 9.6, iOS 15.7.8 ...
CVE-2023-32654MEDIUM6.5A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.5. A user may be abl...
CVE-2023-32445MEDIUM6.1This issue was addressed with improved checks. This issue is fixed in Safari 16.6, watchOS 9.6, iOS 15.7.8 and iPadOS 15...
CVE-2023-32427MEDIUM5.9This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in Apple Music 4....
CVE-2023-28203MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in Apple Music 4.2.0 for Android. An app may be able t...
CVE-2023-0958MEDIUM6.5Several plugins for WordPress by Inisev are vulnerable to unauthorized installation of plugins due to a missing capabili...
CVE-2023-38331MEDIUM5.4Zoho ManageEngine Support Center Plus 14001 and below is vulnerable to stored XSS in the products module.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now