2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6723CRITICAL9.8An unrestricted file upload vulnerability has been identified in Repbox, which allows an attacker to upload malicious fi...
CVE-2023-6381MEDIUM5.5Improper input validation vulnerability in Newsletter Software SuperMailer affecting version 11.20.0.2204. An attacker c...
CVE-2023-6380MEDIUM6.1Open redirect vulnerability has been found in the Open CMS product affecting versions 14 and 15 of the 'Mercury' templat...
CVE-2023-6379MEDIUM6.1Cross-site scripting (XSS) vulnerability in Alkacon Software Open CMS, affecting versions 14 and 15 of the 'Mercury' tem...
CVE-2023-6722HIGH7.5A path traversal vulnerability has been detected in Repox, which allows an attacker to read arbitrary files on the runni...
CVE-2023-6721HIGH7.5An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML dat...
CVE-2023-6720MEDIUM5.4An XSS vulnerability stored in Repox has been identified, which allows a local attacker to store a specially crafted Jav...
CVE-2023-6719MEDIUM6.1An XSS vulnerability has been detected in Repox, which allows an attacker to compromise interactions between a user and ...
CVE-2023-47077MEDIUM5.5Adobe InDesign versions 19.0 (and earlier) and 17.4.2 (and earlier) are affected by an out-of-bounds read vulnerability ...
CVE-2023-47076MEDIUM5.5Adobe InDesign versions 19.0 (and earlier) and 17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulnerabi...
CVE-2023-47075HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by a Use After Free vulnerability that...
CVE-2023-47074HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by an out-of-bounds read vulnerability...
CVE-2023-47063HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by an out-of-bounds write vulnerabilit...
CVE-2023-6718HIGH7.5An authentication bypass vulnerability has been found in Repox, which allows a remote user to send a specially crafted P...
CVE-2023-6660MEDIUM6.5When a program running on an affected system appends data to a file via an NFS client mount, the bug can cause the NFS c...
CVE-2023-6534HIGH7.5In versions of FreeBSD 14.0-RELEASE before 14-RELEASE-p2, FreeBSD 13.2-RELEASE before 13.2-RELEASE-p7 and FreeBSD 12.4-R...
CVE-2023-44252HIGH8.8** UNSUPPORTED WHEN ASSIGNED **An improper authentication vulnerability [CWE-287] in Fortinet FortiWAN version 5.2.0 thr...
CVE-2023-44251HIGH8.8** UNSUPPORTED WHEN ASSIGNED **A improper limitation of a pathname to a restricted directory ('path traversal') vulnerab...
CVE-2023-31210HIGH7.8Usage of user controlled LD_LIBRARY_PATH in agent in Checkmk 2.2.0p10 up to 2.2.0p16 allows malicious Checkmk site user ...
CVE-2023-47536MEDIUM5.3An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and below, version 6.4.14 an...
CVE-2023-45725MEDIUM5.7Design document functions which receive a user http request object may expose authorization or session cookie headers of...
CVE-2023-6478HIGH7.5A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can t...
CVE-2023-6377HIGH7.8A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can r...
CVE-2023-48791HIGH8.8An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in FortiPo...
CVE-2023-48782HIGH8.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now