2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-37746MEDIUM6.1A cross-site scripting (XSS) vulnerability in Maid Hiring Management System v1.0 allows attackers to execute arbitrary w...
CVE-2023-35833MEDIUM6.5An issue was discovered in YSoft SAFEQ 6 Server before 6.0.82. When modifying the URL of the LDAP server configuration f...
CVE-2023-37745MEDIUM6.1A cross-site scripting (XSS) vulnerability in Maid Hiring Management System v1.0 allows attackers to execute arbitrary w...
CVE-2023-37744MEDIUM6.1Maid Hiring Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the componen...
CVE-2023-37743MEDIUM6.1A cross-site scripting (XSS) vulnerability in Teacher Subject Allocation System v1.0 allows attackers to execute arbitra...
CVE-2023-33768MEDIUM6.5Incorrect signature verification of the firmware during the Device Firmware Update process of Belkin Wemo Smart Plug WSP...
CVE-2023-31705MEDIUM5.4A Reflected Cross-site scripting (XSS) vulnerability in Sourcecodester Task Reminder System 1.0 allows an authenticated ...
CVE-2023-3660MEDIUM6.1A vulnerability was found in Campcodes Retro Cellphone Online Store 1.0 and classified as problematic. Affected by this ...
CVE-2023-3659MEDIUM6.1A vulnerability has been found in SourceCodester AC Repair and Services System 1.0 and classified as problematic. Affect...
CVE-2023-29457MEDIUM6.1Reflected XSS attacks, occur when a malicious script is reflected off a web application to the victim's browser. The scr...
CVE-2023-29456MEDIUM5.4URL validation scheme receives input from a user and then parses it to identify its various components. The validation s...
CVE-2023-29455MEDIUM6.1Reflected XSS attacks, also known as non-persistent attacks, occur when a malicious script is reflected off a web applic...
CVE-2023-29454MEDIUM5.4Stored or persistent cross-site scripting (XSS) is a type of XSS where the attacker first sends the payload to the web a...
CVE-2023-29452MEDIUM5.4 Currently, geomap configuration (Administration -> General -> Geographical maps) allows using HTML in the field “Attrib...
CVE-2023-29449MEDIUM4.9JavaScript preprocessing, webhooks and global scripts can cause uncontrolled CPU, memory, and disk I/O utilization. Prep...
CVE-2023-3319MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in iDisplay PlatPlay ...
CVE-2023-3444MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.3 before 15.11.10, all versions sta...
CVE-2023-3362MEDIUM5.3An information disclosure issue in GitLab CE/EE affecting all versions from 16.0 prior to 16.0.6, and version 16.1.0 all...
CVE-2023-37563MEDIUM6.5ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthoriz...
CVE-2023-34135MEDIUM6.5Path Traversal vulnerability in SonicWall GMS and Analytics allows a remote authenticated attacker to read arbitrary fil...
CVE-2023-34134MEDIUM6.5Exposure of sensitive information to an unauthorized actor vulnerability in SonicWall GMS and Analytics allows authentic...
CVE-2023-34131MEDIUM5.3Exposure of sensitive information to an unauthorized actor vulnerability in SonicWall GMS and Analytics enables an unaut...
CVE-2023-2576MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 before 15.11.10, all versions sta...
CVE-2023-2200MEDIUM5.4An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14 before 15.11.10, all versions sta...
CVE-2023-37561MEDIUM6.1Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthentic...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now