2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-49345HIGH7.8Temporary data passed between application components by Budgie Extras Takeabreak applet could potentially be viewed or m...
CVE-2023-49344HIGH7.8Temporary data passed between application components by Budgie Extras Window Shuffler applet could potentially be viewed...
CVE-2023-49343HIGH7.8Temporary data passed between application components by Budgie Extras Dropby applet could potentially be viewed or manip...
CVE-2023-49342HIGH7.8Temporary data passed between application components by Budgie Extras Clockworks applet could potentially be viewed or m...
CVE-2023-0248MEDIUM5.3An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certa...
CVE-2023-50472HIGH7.5cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
CVE-2023-50471HIGH7.5cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.
CVE-2023-49786MEDIUM5.9Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1,...
CVE-2023-49294HIGH7.5Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1,...
CVE-2023-45894CRITICAL10The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the serv...
CVE-2023-37457HIGH8.2Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk versions 18.20.0 and prior, 20.5.0...
CVE-2023-50713MEDIUM5Speckle Server provides server, frontend, 3D viewer, and other JavaScript utilities for the Speckle 3D data platform. A ...
CVE-2023-50017HIGH8.8Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/database/backu...
CVE-2023-4694HIGH7.5Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when sending a SOAP message to the s...
CVE-2023-41151HIGH7.5An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the ...
CVE-2023-6563HIGH7.7An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be triggered in environments which ...
CVE-2023-50710MEDIUM4.3Hono is a web framework written in TypeScript. Prior to version 3.11.7, clients may override named path parameter values...
CVE-2023-50269HIGH7.5Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions...
CVE-2023-49157MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andreas Münch Mult...
CVE-2023-49152MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Labs64 Credit Trac...
CVE-2023-49151MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Simple Calendar Si...
CVE-2023-5769MEDIUM6.1 A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious act...
CVE-2023-49860MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs WP Project ...
CVE-2023-49842MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpexpertsio Rocket...
CVE-2023-49150MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CurrencyRate.Today...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now