2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3828MEDIUM6.1A vulnerability was found in Bug Finder Listplace Directory Listing Platform 3.0. It has been classified as problematic....
CVE-2023-3827MEDIUM6.1A vulnerability was found in Bug Finder Listplace Directory Listing Platform 3.0 and classified as problematic. Affected...
CVE-2023-3247MEDIUM4.3In PHP versions 8.0.* before 8.0.29, 8.1.* before 8.1.20, 8.2.* before 8.2.7 when using SOAP HTTP Digest Authentication,...
CVE-2023-28530MEDIUM5.4IBM Cognos Analytics 11.1 and 11.2 is vulnerable to stored cross-site scripting, caused by improper validation of SVG Fi...
CVE-2023-25929MEDIUM5.4IBM Cognos Analytics 11.1 and 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2023-3603MEDIUM6.5A missing allocation check in sftp server processing read requests may cause a NULL dereference on low-memory conditions...
CVE-2023-37905MEDIUM6.1ckeditor-wordcount-plugin is an open source WordCount Plugin for CKEditor. It has been discovered that the `ckeditor-wor...
CVE-2023-37901MEDIUM5.4Indico is an open source a general-purpose, web based event management tool. There is a Cross-Site-Scripting vulnerabili...
CVE-2023-25841MEDIUM6.1There is a stored Cross-site Scripting vulnerability in Esri ArcGIS Server versions 11.0 and below on Windows and Linux ...
CVE-2023-38187MEDIUM6.5Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-38173MEDIUM4.3Microsoft Edge for Android Spoofing Vulnerability
CVE-2023-35392MEDIUM4.7Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2023-3102MEDIUM5.3A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16....
CVE-2023-37742MEDIUM6.1WebBoss.io CMS before v3.7.0.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability.
CVE-2023-3822MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3821MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3819MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3484MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 12.8 before 15.11.11, all versions starti...
CVE-2023-32478MEDIUM4.9 Dell PowerStore versions prior to 3.5.0.1 contain an insertion of sensitive information into log file vulnerability. A ...
CVE-2023-3815MEDIUM6.1A vulnerability, which was classified as problematic, has been found in y_project RuoYi up to 4.7.7. Affected by this is...
CVE-2023-25836MEDIUM5.4There is a Cross-site Scripting vulnerability in Esri Portal for ArcGIS Sites in versions 10.9 and below that may allow ...
CVE-2023-32625MEDIUM4.3Cross-site request forgery (CSRF) vulnerability in TS Webfonts for SAKURA 3.1.2 and earlier allows a remote unauthentica...
CVE-2023-32624MEDIUM6.1Cross-site scripting vulnerability in TS Webfonts for SAKURA 3.1.0 and earlier allows a remote unauthenticated attacker ...
CVE-2023-3800MEDIUM6.6A vulnerability was found in EasyAdmin8 2.0.2.2. It has been classified as problematic. Affected is an unknown function ...
CVE-2023-37645MEDIUM5.3eyoucms v1.6.3 was discovered to contain an information disclosure vulnerability via the component /custom_model_path/re...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now