2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38745 | MEDIUM | 6.3 | 0.2% | Jul 25, 2023 | Pandoc before 3.1.6 allows arbitrary file write: this can be triggered by providing a crafted image element in the input... |
| CVE-2023-32639 | MEDIUM | 5.5 | 0.2% | Jul 25, 2023 | Applicant Programme Ver.7.06 and earlier improperly restricts XML external entity references (XXE). By processing a spec... |
| CVE-2023-23568 | MEDIUM | 5.4 | 0.3% | Jul 25, 2023 | Improper privilege validation in Command Centre Server allows authenticated unprivileged operators to modify and view P... |
| CVE-2023-33777 | MEDIUM | 5.3 | 0.6% | Jul 25, 2023 | An issue in /functions/fbaorder.php of Prestashop amazon before v5.2.24 allows attackers to execute a directory traversa... |
| CVE-2023-25074 | MEDIUM | 5.4 | 0.3% | Jul 25, 2023 | Improper privilege validation in Command Centre Server allows authenticated unprivileged operators to modify and view C... |
| CVE-2023-22428 | MEDIUM | 6.5 | 0.3% | Jul 24, 2023 | Improper privilege validation in Command Centre Server allows authenticated operators to modify Division lineage. This... |
| CVE-2023-20593 | MEDIUM | 5.5 | 5.8% | Jul 24, 2023 | An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access s... |
| CVE-2023-37613 | MEDIUM | 6.1 | 0.4% | Jul 24, 2023 | A cross-site scripting (XSS) vulnerability in Assembly Software Trialworks v11.4 allows attackers to execute arbitrary w... |
| CVE-2023-3323 | MEDIUM | 5.4 | 0.3% | Jul 24, 2023 | A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the ... |
| CVE-2023-3750 | MEDIUM | 5.3 | 0.6% | Jul 24, 2023 | A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulti... |
| CVE-2023-3745 | MEDIUM | 5.5 | 0.4% | Jul 24, 2023 | A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue ... |
| CVE-2023-3384 | MEDIUM | 5.4 | 0.4% | Jul 24, 2023 | A flaw was found in the Quay registry. While the image labels created through Quay undergo validation both in the UI and... |
| CVE-2023-3019 | MEDIUM | 6.5 | 0.3% | Jul 24, 2023 | A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue ... |
| CVE-2023-33952 | MEDIUM | 6.7 | 0.5% | Jul 24, 2023 | A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. Th... |
| CVE-2023-33951 | MEDIUM | 5.3 | 0.3% | Jul 24, 2023 | A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling o... |
| CVE-2023-2860 | MEDIUM | 4.4 | 0.4% | Jul 24, 2023 | An out-of-bounds read vulnerability was found in the SR-IPv6 implementation in the Linux kernel. The flaw exists within ... |
| CVE-2023-3863 | MEDIUM | 4.1 | 0.2% | Jul 24, 2023 | A use-after-free flaw was found in nfc_llcp_find_local in net/nfc/llcp_core.c in NFC in the Linux kernel. This flaw allo... |
| CVE-2023-3344 | MEDIUM | 4.8 | 0.4% | Jul 24, 2023 | The Auto Location for WP Job Manager via Google WordPress plugin before 1.1 does not sanitise and escape some of its set... |
| CVE-2023-3248 | MEDIUM | 4.8 | 0.4% | Jul 24, 2023 | The All-in-one Floating Contact Form WordPress plugin before 2.1.2 does not sanitise and escape some of its settings, wh... |
| CVE-2023-2309 | MEDIUM | 6.1 | 0.8% | Jul 24, 2023 | The wpForo Forum WordPress plugin before 2.1.9 does not escape some request parameters while in debug mode, leading to a... |
| CVE-2023-38058 | MEDIUM | 4.3 | 0.3% | Jul 24, 2023 | An improper privilege check in the OTRS ticket move action in the agent interface allows any as agent authenticated at... |
| CVE-2023-38057 | MEDIUM | 5.4 | 0.3% | Jul 24, 2023 | An improper input validation vulnerability in OTRS Survey modules allows any attacker with a link to a valid and unanswe... |
| CVE-2023-3862 | MEDIUM | 4.7 | 0.4% | Jul 24, 2023 | A vulnerability was found in Travelmate Travelable Trek Management Solution 1.0. It has been rated as problematic. Affec... |
| CVE-2023-3861 | MEDIUM | 6.1 | 0.3% | Jul 24, 2023 | A vulnerability was found in phpscriptpoint Insurance 1.2. It has been declared as problematic. Affected by this vulnera... |
| CVE-2023-3860 | MEDIUM | 6.1 | 0.3% | Jul 24, 2023 | A vulnerability was found in phpscriptpoint Insurance 1.2. It has been classified as problematic. Affected is an unknown... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now