2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3684MEDIUM6.1A vulnerability was found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this issue is some un...
CVE-2023-3683MEDIUM5.4A vulnerability has been found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this vulnerabili...
CVE-2023-30791MEDIUM4.6Plane version 0.7.1-dev allows an attacker to change the avatar of his profile, which allows uploading files with HTML e...
CVE-2023-2507MEDIUM6.1CleverTap Cordova Plugin version 2.6.2 allows a remote attacker to execute JavaScript code in any application that is op...
CVE-2023-3681MEDIUM6.1A vulnerability classified as problematic was found in Campcodes Retro Cellphone Online Store 1.0. This vulnerability af...
CVE-2023-38350MEDIUM5.4PNP4Nagios through 81ebfc5 has stored XSS in the AJAX controller via the basket API and filters. This affects 0.6.26.
CVE-2023-36466MEDIUM4.3Discourse is an open source discussion platform. When editing a topic, there is a vulnerability that enables a user to b...
CVE-2023-34236MEDIUM6.5Weave GitOps Terraform Controller (aka Weave TF-controller) is a controller for Flux to reconcile Terraform resources in...
CVE-2023-37472MEDIUM6.5Knowage is an open source suite for business analytics. The application often use user supplied data to create HQL queri...
CVE-2023-36850MEDIUM6.5An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Connectivity Fault Manageme...
CVE-2023-38253MEDIUM5.5An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker...
CVE-2023-38252MEDIUM5.5An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to c...
CVE-2023-37224MEDIUM5.5An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se...
CVE-2023-37223MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows a ...
CVE-2023-36888MEDIUM6.3Microsoft Edge for Android (Chromium-based) Tampering Vulnerability
CVE-2023-36883MEDIUM4.3Microsoft Edge for iOS Spoofing Vulnerability
CVE-2023-36849MEDIUM6.5An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of...
CVE-2023-36848MEDIUM6.5An Improper Handling of Undefined Values vulnerability in the periodic packet management daemon (PPMD) of Juniper Networ...
CVE-2023-36840MEDIUM5.5A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved a...
CVE-2023-36836MEDIUM4.7A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and J...
CVE-2023-36834MEDIUM6.5An Incomplete Internal State Distinction vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos O...
CVE-2023-32760MEDIUM6.5An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se...
CVE-2023-32759MEDIUM6.5An issue in Archer Platform before v.6.13 and fixed in 6.12.0.6 and 6.13.0 allows an authenticated attacker to obtain se...
CVE-2023-24896MEDIUM5.4Dynamics 365 Finance Spoofing Vulnerability
CVE-2023-36838MEDIUM5.5An Out-of-bounds Read vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series all...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now