2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50441 | MEDIUM | 5.5 | 0.2% | Dec 13, 2023 | Encrypted folders created by PRIMX ZONECENTRAL for Windows before Q.2021.2 (ANSSI qualification submission) or ZONECENTR... |
| CVE-2023-49296 | MEDIUM | 6.1 | 0.3% | Dec 13, 2023 | The Arduino Create Agent allows users to use the Arduino Create applications to upload code to any USB connected Arduino... |
| CVE-2023-46247 | HIGH | 7.5 | 0.7% | Dec 13, 2023 | Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine (EVM). Contracts containing large arrays mi... |
| CVE-2023-6795 | MEDIUM | 4.7 | 1.1% | Dec 13, 2023 | An OS command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to di... |
| CVE-2023-6794 | MEDIUM | 4.7 | 0.6% | Dec 13, 2023 | An arbitrary file upload vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write adminis... |
| CVE-2023-6793 | LOW | 2.7 | 0.6% | Dec 13, 2023 | An improper privilege management vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only ... |
| CVE-2023-6792 | MEDIUM | 6.3 | 1.1% | Dec 13, 2023 | An OS command injection vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated API ... |
| CVE-2023-6791 | MEDIUM | 4.9 | 0.6% | Dec 13, 2023 | A credential disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administr... |
| CVE-2023-6790 | MEDIUM | 6.1 | 0.7% | Dec 13, 2023 | A DOM-Based cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a remote attacker to ... |
| CVE-2023-6789 | MEDIUM | 4.8 | 0.4% | Dec 13, 2023 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-... |
| CVE-2023-6772 | HIGH | 7.2 | 0.6% | Dec 13, 2023 | A vulnerability, which was classified as critical, was found in OTCMS 7.01. Affected is an unknown function of the file ... |
| CVE-2023-6771 | CRITICAL | 9.8 | 0.6% | Dec 13, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Simple Student Attendance System 1.0... |
| CVE-2023-46727 | CRITICAL | 9.8 | 67.1% | Dec 13, 2023 | GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.11, GLPI i... |
| CVE-2023-46726 | CRITICAL | 9.8 | 1.3% | Dec 13, 2023 | GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.11, on PHP... |
| CVE-2023-43813 | HIGH | 8.8 | 31.1% | Dec 13, 2023 | GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.11, the sa... |
| CVE-2023-6767 | MEDIUM | 6.1 | 0.6% | Dec 13, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Wedding Guest e-Book 1.0. This affects... |
| CVE-2023-6766 | LOW | 3.5 | 0.5% | Dec 13, 2023 | A vulnerability classified as problematic has been found in PHPGurukul Teacher Subject Allocation Management System 1.0.... |
| CVE-2023-6765 | CRITICAL | 9.8 | 0.7% | Dec 13, 2023 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as critical.... |
| CVE-2023-50779 | MEDIUM | 4.3 | 0.5% | Dec 13, 2023 | Missing permission checks in Jenkins PaaSLane Estimate Plugin 1.0.4 and earlier allow attackers with Overall/Read permis... |
| CVE-2023-50778 | HIGH | 8.8 | 0.4% | Dec 13, 2023 | A cross-site request forgery (CSRF) vulnerability in Jenkins PaaSLane Estimate Plugin 1.0.4 and earlier allows attackers... |
| CVE-2023-50777 | MEDIUM | 4.3 | 0.3% | Dec 13, 2023 | Jenkins PaaSLane Estimate Plugin 1.0.4 and earlier does not mask PaaSLane authentication tokens displayed on the job con... |
| CVE-2023-50776 | MEDIUM | 4.3 | 0.3% | Dec 13, 2023 | Jenkins PaaSLane Estimate Plugin 1.0.4 and earlier stores PaaSLane authentication tokens unencrypted in job config.xml f... |
| CVE-2023-50775 | MEDIUM | 4.3 | 0.3% | Dec 13, 2023 | A cross-site request forgery (CSRF) vulnerability in Jenkins Deployment Dashboard Plugin 1.0.10 and earlier allows attac... |
| CVE-2023-50774 | HIGH | 8.1 | 0.5% | Dec 13, 2023 | A cross-site request forgery (CSRF) vulnerability in Jenkins HTMLResource Plugin 1.02 and earlier allows attackers to de... |
| CVE-2023-50773 | MEDIUM | 4.3 | 0.3% | Dec 13, 2023 | Jenkins Dingding JSON Pusher Plugin 2.0 and earlier does not mask access tokens displayed on the job configuration form,... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now