2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-39151MEDIUM5.4Jenkins 2.415 and earlier, LTS 2.401.2 and earlier does not sanitize or properly encode URLs in build logs when transfor...
CVE-2023-37049MEDIUM6.5emlog 2.1.9 is vulnerable to Arbitrary file deletion via admin\template.php.
CVE-2023-32468MEDIUM4.9 Dell ECS Streamer, versions prior to 2.0.7.1, contain an insertion of sensitive information in log files vulnerability....
CVE-2023-1401MEDIUM4.3An issue has been discovered in GitLab DAST scanner affecting all versions starting from 3.0.29 before 4.0.5, in which t...
CVE-2023-3946MEDIUM6.1 A reflected cross-site scripting (XSS) vulnerability in ePO prior to 5.10 SP1 Update 1allows a remote unauthenticated a...
CVE-2023-20891MEDIUM6.5The VMware Tanzu Application Service for VMs and Isolation Segment contain an information disclosure vulnerability due t...
CVE-2023-3947MEDIUM5.3The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure due to hardcoded e...
CVE-2023-38503MEDIUM6.5Directus is a real-time API and App dashboard for managing SQL database content. Starting in version 10.3.0 and prior to...
CVE-2023-3945MEDIUM6.1A vulnerability was found in phpscriptpoint Lawyer 1.6. It has been classified as problematic. This affects an unknown p...
CVE-2023-38502MEDIUM6.5TDengine is an open source, time-series database optimized for Internet of Things devices. Prior to version 3.0.7.1, TDe...
CVE-2023-38501MEDIUM6.1copyparty is file server software. Prior to version 1.8.7, the application contains a reflected cross-site scripting via...
CVE-2023-38500MEDIUM6.1TYPO3 HTML Sanitizer is an HTML sanitizer, written in PHP, aiming to provide cross-site-scripting-safe markup based on e...
CVE-2023-38499MEDIUM5.3TYPO3 is an open source PHP based web content management system. Starting in version 9.4.0 and prior to versions 9.5.42 ...
CVE-2023-37919MEDIUM5.4Cal.com is open-source scheduling software. A vulnerability allows active sessions associated with an account to remain ...
CVE-2023-37902MEDIUM5.3Vyper is a Pythonic programming language that targets the Ethereum Virtual Machine (EVM). Prior to version 0.3.10, the e...
CVE-2023-3944MEDIUM6.1A vulnerability was found in phpscriptpoint Lawyer 1.6 and classified as problematic. Affected by this issue is some unk...
CVE-2023-37257MEDIUM5.4DataEase is an open source data visualization analysis tool. Prior to version 1.18.9, the DataEase panel and dataset hav...
CVE-2023-39130MEDIUM5.5GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap buffer overflow via the function pe_as16() at /gdb/c...
CVE-2023-39129MEDIUM5.5GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym(...
CVE-2023-39128MEDIUM5.5GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a stack overflow via the function ada_decode at /gdb/ada-la...
CVE-2023-36826MEDIUM6.5Sentry is an error tracking and performance monitoring platform. Starting in version 8.21.0 and prior to version 23.5.2,...
CVE-2023-36806MEDIUM5.4Contao is an open source content management system. Starting in version 4.0.0 and prior to versions 4.9.42, 4.13.28, and...
CVE-2023-35944MEDIUM5.3Envoy is an open source edge and service proxy designed for cloud-native applications. Envoy allows mixed-case schemes i...
CVE-2023-35942MEDIUM6.5Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,...
CVE-2023-35929MEDIUM5.4Tuleap is a free and open source suite to improve management of software development and collaboration. Prior to version...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now