2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3684 | MEDIUM | 6.1 | 0.3% | Jul 16, 2023 | A vulnerability was found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this issue is some un... |
| CVE-2023-3683 | MEDIUM | 5.4 | 0.3% | Jul 16, 2023 | A vulnerability has been found in LivelyWorks Articart 2.0.1 and classified as problematic. Affected by this vulnerabili... |
| CVE-2023-30791 | MEDIUM | 4.6 | 0.5% | Jul 15, 2023 | Plane version 0.7.1-dev allows an attacker to change the avatar of his profile, which allows uploading files with HTML e... |
| CVE-2023-2507 | MEDIUM | 6.1 | 0.7% | Jul 15, 2023 | CleverTap Cordova Plugin version 2.6.2 allows a remote attacker to execute JavaScript code in any application that is op... |
| CVE-2023-3681 | MEDIUM | 6.1 | 0.5% | Jul 15, 2023 | A vulnerability classified as problematic was found in Campcodes Retro Cellphone Online Store 1.0. This vulnerability af... |
| CVE-2023-38350 | MEDIUM | 5.4 | 0.4% | Jul 15, 2023 | PNP4Nagios through 81ebfc5 has stored XSS in the AJAX controller via the basket API and filters. This affects 0.6.26. |
| CVE-2023-36466 | MEDIUM | 4.3 | 0.3% | Jul 14, 2023 | Discourse is an open source discussion platform. When editing a topic, there is a vulnerability that enables a user to b... |
| CVE-2023-34236 | MEDIUM | 6.5 | 0.7% | Jul 14, 2023 | Weave GitOps Terraform Controller (aka Weave TF-controller) is a controller for Flux to reconcile Terraform resources in... |
| CVE-2023-37472 | MEDIUM | 6.5 | 0.6% | Jul 14, 2023 | Knowage is an open source suite for business analytics. The application often use user supplied data to create HQL queri... |
| CVE-2023-36850 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Connectivity Fault Manageme... |
| CVE-2023-38253 | MEDIUM | 5.5 | 0.4% | Jul 14, 2023 | An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker... |
| CVE-2023-38252 | MEDIUM | 5.5 | 0.4% | Jul 14, 2023 | An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to c... |
| CVE-2023-37224 | MEDIUM | 5.5 | 0.2% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se... |
| CVE-2023-37223 | MEDIUM | 5.4 | 0.4% | Jul 14, 2023 | Cross Site Scripting (XSS) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows a ... |
| CVE-2023-36888 | MEDIUM | 6.3 | 0.5% | Jul 14, 2023 | Microsoft Edge for Android (Chromium-based) Tampering Vulnerability |
| CVE-2023-36883 | MEDIUM | 4.3 | 0.6% | Jul 14, 2023 | Microsoft Edge for iOS Spoofing Vulnerability |
| CVE-2023-36849 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of... |
| CVE-2023-36848 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Handling of Undefined Values vulnerability in the periodic packet management daemon (PPMD) of Juniper Networ... |
| CVE-2023-36840 | MEDIUM | 5.5 | 0.2% | Jul 14, 2023 | A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved a... |
| CVE-2023-36836 | MEDIUM | 4.7 | 0.2% | Jul 14, 2023 | A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and J... |
| CVE-2023-36834 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Incomplete Internal State Distinction vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos O... |
| CVE-2023-32760 | MEDIUM | 6.5 | 0.4% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se... |
| CVE-2023-32759 | MEDIUM | 6.5 | 0.5% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 and fixed in 6.12.0.6 and 6.13.0 allows an authenticated attacker to obtain se... |
| CVE-2023-24896 | MEDIUM | 5.4 | 0.7% | Jul 14, 2023 | Dynamics 365 Finance Spoofing Vulnerability |
| CVE-2023-36838 | MEDIUM | 5.5 | 0.2% | Jul 14, 2023 | An Out-of-bounds Read vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series all... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now