2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49345 | HIGH | 7.8 | 0.3% | Dec 14, 2023 | Temporary data passed between application components by Budgie Extras Takeabreak applet could potentially be viewed or m... |
| CVE-2023-49344 | HIGH | 7.8 | 0.3% | Dec 14, 2023 | Temporary data passed between application components by Budgie Extras Window Shuffler applet could potentially be viewed... |
| CVE-2023-49343 | HIGH | 7.8 | 0.3% | Dec 14, 2023 | Temporary data passed between application components by Budgie Extras Dropby applet could potentially be viewed or manip... |
| CVE-2023-49342 | HIGH | 7.8 | 0.3% | Dec 14, 2023 | Temporary data passed between application components by Budgie Extras Clockworks applet could potentially be viewed or m... |
| CVE-2023-0248 | MEDIUM | 5.3 | 0.3% | Dec 14, 2023 | An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.07.02 in certa... |
| CVE-2023-50472 | HIGH | 7.5 | 1.0% | Dec 14, 2023 | cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c. |
| CVE-2023-50471 | HIGH | 7.5 | 1.5% | Dec 14, 2023 | cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c. |
| CVE-2023-49786 | MEDIUM | 5.9 | 5.3% | Dec 14, 2023 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1,... |
| CVE-2023-49294 | HIGH | 7.5 | 45.6% | Dec 14, 2023 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk prior to versions 18.20.1, 20.5.1,... |
| CVE-2023-45894 | CRITICAL | 10 | 1.2% | Dec 14, 2023 | The Remote Application Server in Parallels RAS before 19.2.23975 does not segment virtualized applications from the serv... |
| CVE-2023-37457 | HIGH | 8.2 | 1.1% | Dec 14, 2023 | Asterisk is an open source private branch exchange and telephony toolkit. In Asterisk versions 18.20.0 and prior, 20.5.0... |
| CVE-2023-50713 | MEDIUM | 5 | 0.4% | Dec 14, 2023 | Speckle Server provides server, frontend, 3D viewer, and other JavaScript utilities for the Speckle 3D data platform. A ... |
| CVE-2023-50017 | HIGH | 8.8 | 0.4% | Dec 14, 2023 | Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/database/backu... |
| CVE-2023-4694 | HIGH | 7.5 | 0.8% | Dec 14, 2023 | Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when sending a SOAP message to the s... |
| CVE-2023-41151 | HIGH | 7.5 | 0.7% | Dec 14, 2023 | An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the ... |
| CVE-2023-6563 | HIGH | 7.7 | 1.2% | Dec 14, 2023 | An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be triggered in environments which ... |
| CVE-2023-50710 | MEDIUM | 4.3 | 0.6% | Dec 14, 2023 | Hono is a web framework written in TypeScript. Prior to version 3.11.7, clients may override named path parameter values... |
| CVE-2023-50269 | HIGH | 7.5 | 57.6% | Dec 14, 2023 | Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions... |
| CVE-2023-49157 | MEDIUM | 4.8 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andreas Münch Mult... |
| CVE-2023-49152 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Labs64 Credit Trac... |
| CVE-2023-49151 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Simple Calendar Si... |
| CVE-2023-5769 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious act... |
| CVE-2023-49860 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs WP Project ... |
| CVE-2023-49842 | MEDIUM | 4.8 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpexpertsio Rocket... |
| CVE-2023-49150 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CurrencyRate.Today... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now