2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-30503HIGH8.8Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users t...
CVE-2023-30502HIGH8.8Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users t...
CVE-2023-30501HIGH8.8Vulnerabilities exist in the Aruba EdgeConnect Enterprise command line interface that allow remote authenticated users t...
CVE-2023-2726HIGH8.8Inappropriate implementation in WebApp Installs in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinc...
CVE-2023-2725HIGH8.8Use after free in Guest View in Google Chrome prior to 113.0.5672.126 allowed an attacker who convinced a user to instal...
CVE-2023-2724HIGH8.8Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corr...
CVE-2023-2723HIGH8.8Use after free in DevTools in Google Chrome prior to 113.0.5672.126 allowed a remote attacker who had compromised the re...
CVE-2023-2722HIGH8.8Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potential...
CVE-2023-2721HIGH8.8Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit h...
CVE-2023-33001HIGH7.5Jenkins HashiCorp Vault Plugin 360.v0a_1c04cf807d and earlier does not properly mask (i.e., replace with asterisks) cred...
CVE-2023-33000HIGH7.5Jenkins NS-ND Integration Performance Publisher Plugin 4.8.0.149 and earlier does not mask credentials displayed on the ...
CVE-2023-32998HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins AppSpider Plugin 1.0.15 and earlier allows attackers to con...
CVE-2023-32997HIGH8.8Jenkins CAS Plugin 1.6.2 and earlier does not invalidate the previous session on login.
CVE-2023-32995HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins SAML Single Sign On(SSO) Plugin 2.0.0 and earlier allows at...
CVE-2023-32992HIGH8.8Missing permission checks in Jenkins SAML Single Sign On(SSO) Plugin 2.0.2 and earlier allow attackers with Overall/Read...
CVE-2023-32991HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins SAML Single Sign On(SSO) Plugin 2.0.2 and earlier allows at...
CVE-2023-32989HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Azure VM Agents Plugin 852.v8d35f0960a_43 and earlier allow...
CVE-2023-32987HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Reverse Proxy Auth Plugin 1.7.4 and earlier allows attacker...
CVE-2023-32986HIGH8.8Jenkins File Parameter Plugin 285.v757c5b_67a_c25 and earlier does not restrict the name (and resulting uploaded file na...
CVE-2023-32981HIGH8.8An arbitrary file write vulnerability in Jenkins Pipeline Utility Steps Plugin 2.15.2 and earlier allows attackers able ...
CVE-2023-28076HIGH7.5 CloudLink 7.1.2 and all prior versions contain a broken or risky cryptographic algorithm vulnerability. An unauthentica...
CVE-2023-31576HIGH8.8An arbitrary file upload vulnerability in Serendipity 2.4-beta1 allows attackers to execute arbitrary code via a crafted...
CVE-2023-31572HIGH8.8An issue in Bludit 4.0.0-rc-2 allows authenticated attackers to change the Administrator password and escalate privilege...
CVE-2023-2548HIGH7.2The RegistrationMagic plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and inc...
CVE-2023-32955HIGH8.1Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in DHCP Client ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now