2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-32725HIGH8.8The website configured in the URL widget will receive a session cookie when testing or executing scheduled reports. The ...
CVE-2023-6911MEDIUM4.8Multiple WSO2 products have been identified as vulnerable due to improper output encoding, a Stored Cross Site Scripting...
CVE-2023-41314HIGH8.2The api /api/snapshot and /api/get_log_file would allow unauthenticated access. It could allow a DoS attack or get arbit...
CVE-2023-6483CRITICAL9.8The vulnerability exists in ADiTaaS (Allied Digital Integrated Tool-as-a-Service) version 5.1 due to an improper authent...
CVE-2023-6909HIGH7.5Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.9.2.
CVE-2023-6908MEDIUM5.9A vulnerability, which was classified as problematic, was found in DFIRKuiper Kuiper 2.3.4. This affects the function un...
CVE-2023-6907CRITICAL9.1A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical. Affected by this vu...
CVE-2023-6906CRITICAL9.8A vulnerability, which was classified as critical, was found in Totolink A7100RU 7.4cu.2313_B20191024. Affected is the f...
CVE-2023-50981HIGH7.5ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop)...
CVE-2023-50980HIGH7.5gf2n.cpp in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (application crash) via ...
CVE-2023-50979MEDIUM5.9Crypto++ (aka cryptopp) through 8.9.0 has a Marvin side channel during decryption with PKCS#1 v1.5 padding.
CVE-2023-6905CRITICAL9.8A vulnerability, which was classified as problematic, has been found in Jahastech NxFilter 4.3.2.5. This issue affects s...
CVE-2023-50976CRITICAL9.8Redpanda before 23.1.21 and 23.2.x before 23.2.18 has missing authorization checks in the Transactions API.
CVE-2023-6904HIGH8.8A vulnerability classified as problematic was found in Jahastech NxFilter 4.3.2.5. This vulnerability affects unknown co...
CVE-2023-6903CRITICAL9.8A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security Gateway 6.3.1. This affec...
CVE-2023-3907HIGH8.8A privilege escalation vulnerability in GitLab EE affecting all versions from 16.0 prior to 16.4.4, 16.5 prior to 16.5.4...
CVE-2023-6902CRITICAL9.8A vulnerability has been found in codelyfe Stupid Simple CMS up to 1.2.4 and classified as critical. This vulnerability ...
CVE-2023-50271HIGH7.5 A potential security vulnerability has been identified with HP-UX System Management Homepage (SMH). This vulnerability ...
CVE-2023-6901CRITICAL9.8A vulnerability, which was classified as critical, was found in codelyfe Stupid Simple CMS up to 1.2.3. This affects an ...
CVE-2023-6900CRITICAL9.1A vulnerability, which was classified as critical, has been found in rmountjoy92 DashMachine 0.5-4. Affected by this iss...
CVE-2023-6899CRITICAL9.8A vulnerability classified as problematic was found in rmountjoy92 DashMachine 0.5-4. Affected by this vulnerability is ...
CVE-2023-6898CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Best Courier Management System 1.0. Affected is ...
CVE-2023-49834HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in realmag777 FOX – Currency Switcher Professional for WooCommerce.This ...
CVE-2023-49824HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in PixelYourSite Product Catalog Feed by PixelYourSite.This issue affect...
CVE-2023-49816HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Innovative Solutions Fix My Feed RSS Repair.This issue affects Fix My...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now