2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39151 | MEDIUM | 5.4 | 0.9% | Jul 26, 2023 | Jenkins 2.415 and earlier, LTS 2.401.2 and earlier does not sanitize or properly encode URLs in build logs when transfor... |
| CVE-2023-37049 | MEDIUM | 6.5 | 0.6% | Jul 26, 2023 | emlog 2.1.9 is vulnerable to Arbitrary file deletion via admin\template.php. |
| CVE-2023-32468 | MEDIUM | 4.9 | 0.4% | Jul 26, 2023 | Dell ECS Streamer, versions prior to 2.0.7.1, contain an insertion of sensitive information in log files vulnerability.... |
| CVE-2023-1401 | MEDIUM | 4.3 | 0.4% | Jul 26, 2023 | An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29 before 4.0.5, in which t... |
| CVE-2023-3946 | MEDIUM | 6.1 | 0.5% | Jul 26, 2023 | A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 SP1 Update 1allows a remote unauthenticated a... |
| CVE-2023-20891 | MEDIUM | 6.5 | 0.5% | Jul 26, 2023 | The VMware Tanzu Application Service for VMs and Isolation Segment contain an information disclosure vulnerability due t... |
| CVE-2023-3947 | MEDIUM | 5.3 | 0.3% | Jul 26, 2023 | The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure due to hardcoded e... |
| CVE-2023-38503 | MEDIUM | 6.5 | 0.4% | Jul 25, 2023 | Directus is a real-time API and App dashboard for managing SQL database content. Starting in version 10.3.0 and prior to... |
| CVE-2023-3945 | MEDIUM | 6.1 | 0.3% | Jul 25, 2023 | A vulnerability was found in phpscriptpoint Lawyer 1.6. It has been classified as problematic. This affects an unknown p... |
| CVE-2023-38502 | MEDIUM | 6.5 | 0.6% | Jul 25, 2023 | TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to version 3.0.7.1, TDe... |
| CVE-2023-38501 | MEDIUM | 6.1 | 6.2% | Jul 25, 2023 | copyparty is file server software. Prior to version 1.8.7, the application contains a reflected cross-site scripting via... |
| CVE-2023-38500 | MEDIUM | 6.1 | 0.4% | Jul 25, 2023 | TYPO3 HTML Sanitizer is an HTML sanitizer, written in PHP, aiming to provide cross-site-scripting-safe markup based on e... |
| CVE-2023-38499 | MEDIUM | 5.3 | 0.9% | Jul 25, 2023 | TYPO3 is an open source PHP based web content management system. Starting in version 9.4.0 and prior to versions 9.5.42 ... |
| CVE-2023-37919 | MEDIUM | 5.4 | 0.3% | Jul 25, 2023 | Cal.com is open-source scheduling software. A vulnerability allows active sessions associated with an account to remain ... |
| CVE-2023-37902 | MEDIUM | 5.3 | 0.5% | Jul 25, 2023 | Vyper is a Pythonic programming language that targets the Ethereum Virtual Machine (EVM). Prior to version 0.3.10, the e... |
| CVE-2023-3944 | MEDIUM | 6.1 | 0.3% | Jul 25, 2023 | A vulnerability was found in phpscriptpoint Lawyer 1.6 and classified as problematic. Affected by this issue is some unk... |
| CVE-2023-37257 | MEDIUM | 5.4 | 0.4% | Jul 25, 2023 | DataEase is an open source data visualization analysis tool. Prior to version 1.18.9, the DataEase panel and dataset hav... |
| CVE-2023-39130 | MEDIUM | 5.5 | 0.2% | Jul 25, 2023 | GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/c... |
| CVE-2023-39129 | MEDIUM | 5.5 | 0.2% | Jul 25, 2023 | GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym(... |
| CVE-2023-39128 | MEDIUM | 5.5 | 0.3% | Jul 25, 2023 | GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-la... |
| CVE-2023-36826 | MEDIUM | 6.5 | 0.5% | Jul 25, 2023 | Sentry is an error tracking and performance monitoring platform. Starting in version 8.21.0 and prior to version 23.5.2,... |
| CVE-2023-36806 | MEDIUM | 5.4 | 0.5% | Jul 25, 2023 | Contao is an open source content management system. Starting in version 4.0.0 and prior to versions 4.9.42, 4.13.28, and... |
| CVE-2023-35944 | MEDIUM | 5.3 | 0.6% | Jul 25, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Envoy allows mixed-case schemes i... |
| CVE-2023-35942 | MEDIUM | 6.5 | 0.7% | Jul 25, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,... |
| CVE-2023-35929 | MEDIUM | 5.4 | 0.4% | Jul 25, 2023 | Tuleap is a free and open source suite to improve management of software development and collaboration. Prior to version... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now