2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3541 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability has been found in ThinuTech ThinuCMS 1.5 and classified as problematic. Affected by this vulnerability i... |
| CVE-2023-29998 | MEDIUM | 5.4 | 0.5% | Jul 7, 2023 | A Cross-site scripting (XSS) vulnerability in the content editor in Gis3W g3w-suite 3.5 allows remote authenticated user... |
| CVE-2023-3540 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability, which was classified as problematic, was found in SimplePHPscripts NewsLetter Script PHP 2.4. Affected ... |
| CVE-2023-3539 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability, which was classified as problematic, has been found in SimplePHPscripts Simple Forum PHP 2.7. This issu... |
| CVE-2023-3538 | MEDIUM | 5.4 | 0.3% | Jul 7, 2023 | A vulnerability classified as problematic was found in SimplePHPscripts Photo Gallery PHP 2.0. This vulnerability affect... |
| CVE-2023-3537 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability classified as problematic has been found in SimplePHPscripts News Script PHP Pro 2.4. This affects an un... |
| CVE-2023-3536 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability was found in SimplePHPscripts Funeral Script PHP 3.1. It has been rated as problematic. Affected by this... |
| CVE-2023-3535 | MEDIUM | 6.1 | 0.3% | Jul 7, 2023 | A vulnerability was found in SimplePHPscripts FAQ Script PHP 2.3. It has been declared as problematic. Affected by this ... |
| CVE-2023-37308 | MEDIUM | 5.4 | 1.6% | Jul 7, 2023 | Zoho ManageEngine ADAudit Plus before 7100 allows XSS via the username field. |
| CVE-2023-34197 | MEDIUM | 5.4 | 3.0% | Jul 7, 2023 | Zoho ManageEngine ServiceDesk Plus before 14202, ServiceDesk Plus MSP before 14300, and SupportCenter Plus before 14300 ... |
| CVE-2023-33008 | MEDIUM | 5.3 | 1.1% | Jul 7, 2023 | Deserialization of Untrusted Data vulnerability in Apache Software Foundation Apache Johnzon. A malicious attacker can... |
| CVE-2023-3532 | MEDIUM | 5.4 | 0.4% | Jul 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository outline/outline prior to 0.70.1. |
| CVE-2023-35890 | MEDIUM | 5.5 | 0.1% | Jul 7, 2023 | IBM WebSphere Application Server 8.5 and 9.0 could provide weaker than expected security, caused by the improper encodin... |
| CVE-2023-35765 | MEDIUM | 6.5 | 0.4% | Jul 7, 2023 | PiiGAB M-Bus stores credentials in a plaintext file, which could allow a low-level user to gain admin credentia... |
| CVE-2023-32652 | MEDIUM | 6.1 | 0.4% | Jul 7, 2023 | PiiGAB M-Bus does not validate identification strings before processing, which could make it vulnerable to cros... |
| CVE-2023-36829 | MEDIUM | 5.4 | 0.5% | Jul 6, 2023 | Sentry is an error tracking and performance monitoring platform. Starting in version 23.6.0 and prior to version 23.6.2,... |
| CVE-2023-3531 | MEDIUM | 5.4 | 0.5% | Jul 6, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.10. |
| CVE-2023-36462 | MEDIUM | 5.4 | 0.5% | Jul 6, 2023 | Mastodon is a free, open-source social network server based on ActivityPub. Starting in version 2.6.0 and prior to versi... |
| CVE-2023-36459 | MEDIUM | 6.1 | 1.1% | Jul 6, 2023 | Mastodon is a free, open-source social network server based on ActivityPub. Starting in version 1.3 and prior to version... |
| CVE-2023-1298 | MEDIUM | 6.1 | 0.3% | Jul 6, 2023 | ServiceNow has released upgrades and patches that address a Reflected Cross-Site scripting (XSS) vulnerability that was ... |
| CVE-2023-37454 | MEDIUM | 5.5 | 0.4% | Jul 6, 2023 | An issue was discovered in the Linux kernel through 6.4.2. A crafted UDF filesystem image causes a use-after-free write ... |
| CVE-2023-37453 | MEDIUM | 4.6 | 0.6% | Jul 6, 2023 | An issue was discovered in the USB subsystem in the Linux kernel through 6.4.2. There is an out-of-bounds and crash in r... |
| CVE-2023-36823 | MEDIUM | 6.1 | 0.6% | Jul 6, 2023 | Sanitize is an allowlist-based HTML and CSS sanitizer. Using carefully crafted input, an attacker may be able to sneak a... |
| CVE-2023-37136 | MEDIUM | 5.4 | 0.3% | Jul 6, 2023 | A stored cross-site scripting (XSS) vulnerability in the Basic Website Information module of eyoucms v1.6.3 allows attac... |
| CVE-2023-37135 | MEDIUM | 5.4 | 0.3% | Jul 6, 2023 | A stored cross-site scripting (XSS) vulnerability in the Image Upload module of eyoucms v1.6.3 allows attackers to execu... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now