2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0757CRITICAL9.8Incorrect Permission Assignment for Critical Resource vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProCon...
CVE-2023-6571MEDIUM6.1Cross-site Scripting (XSS) - Reflected in kubeflow/kubeflow
CVE-2023-6570MEDIUM6.5Server-Side Request Forgery (SSRF) in kubeflow/kubeflow
CVE-2023-6569HIGH8.2External Control of File Name or Path in h2oai/h2o-3
CVE-2023-50371MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Page Visit Counter...
CVE-2023-48631HIGH7.5@adobe/css-tools versions 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result...
CVE-2023-49708CRITICAL9.8SQLi vulnerability in Starshop component for Joomla.
CVE-2023-49707CRITICAL9.8SQLi vulnerability in S5 Register module for Joomla.
CVE-2023-48925CRITICAL9.8SQL injection vulnerability in Buy Addons bavideotab before version 1.0.6, allows attackers to escalate privileges and o...
CVE-2023-46750MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability when "form" authentication is used in Apache Shiro. Mi...
CVE-2023-46348CRITICAL9.8SQL njection vulnerability in SunnyToo sturls before version 1.1.13, allows attackers to escalate privileges and obtain ...
CVE-2023-40659MEDIUM6.1A reflected XSS vulnerability was discovered in the Easy Quick Contact module for Joomla.
CVE-2023-40658MEDIUM6.1A reflected XSS vulnerability was discovered in the Clicky Analytics Dashboard module for Joomla.
CVE-2023-40657MEDIUM6.1A reflected XSS vulnerability was discovered in the Joomdoc component for Joomla.
CVE-2023-40656MEDIUM6.1A reflected XSS vulnerability was discovered in the Quickform component for Joomla.
CVE-2023-40655MEDIUM6.1A reflected XSS vulnerability was discovered in the Proforms Basic component for Joomla.
CVE-2023-40630CRITICAL9.8Unauthenticated LFI/SSRF in JCDashboards component for Joomla.
CVE-2023-40629CRITICAL9.8SQLi vulnerability in LMS Lite component for Joomla.
CVE-2023-40628MEDIUM6.1A reflected XSS vulnerability was discovered in the Extplorer component for Joomla.
CVE-2023-40627MEDIUM6.1A reflected XSS vulnerability was discovered in the LivingWord component for Joomla.
CVE-2023-25644HIGH7.5 There is a denial of service vulnerability in some ZTE mobile internet products. Due to insufficient validation of Web ...
CVE-2023-25643HIGH8.8 There is a command injection vulnerability in some ZTE mobile internet products. Due to insufficient input validation...
CVE-2023-25642MEDIUM6.5 There is a buffer overflow vulnerability in some ZTE mobile internet producsts. Due to insufficient validation of tcp p...
CVE-2023-1904HIGH7.5In affected versions of Octopus Server it is possible for the OpenID client secret to be logged in clear text during the...
CVE-2023-48085CRITICAL9.8Nagios XI before version 5.11.3 was discovered to contain a remote code execution (RCE) vulnerability via the component ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now