2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34106 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | GLPI is a free asset and IT management software package. Versions of the software starting with 0.68 and prior to 10.0.8... |
| CVE-2023-33335 | MEDIUM | 6.1 | 0.5% | Jul 5, 2023 | Cross Site Scripting (XSS) in Sophos Sophos iView (The EOL was December 31st 2020) in grpname parameter that allows arbi... |
| CVE-2023-25399 | MEDIUM | 5.5 | 0.4% | Jul 5, 2023 | A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() f... |
| CVE-2023-3515 | MEDIUM | 4.4 | 0.4% | Jul 5, 2023 | Open Redirect in GitHub repository go-gitea/gitea prior to 1.19.4. |
| CVE-2023-35978 | MEDIUM | 6.1 | 0.4% | Jul 5, 2023 | A vulnerability in ArubaOS could allow an unauthenticated remote attacker to conduct a reflected cross-site scripting (X... |
| CVE-2023-35977 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line ... |
| CVE-2023-35976 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line ... |
| CVE-2023-35971 | MEDIUM | 6.1 | 0.5% | Jul 5, 2023 | A vulnerability in the ArubaOS web-based management interface could allow an unauthenticated remote attacker to conduct ... |
| CVE-2023-2538 | MEDIUM | 4.2 | 0.2% | Jul 5, 2023 | A CWE-552 "Files or Directories Accessible to External Parties” in the web interface of the Tyan S5552 BMC version 3.00 ... |
| CVE-2023-3482 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using... |
| CVE-2023-3336 | MEDIUM | 5.3 | 0.5% | Jul 5, 2023 | TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may all... |
| CVE-2023-37210 | MEDIUM | 6.5 | 0.2% | Jul 5, 2023 | A website could prevent a user from exiting full-screen mode via alert and prompt calls. This could lead to user confus... |
| CVE-2023-37206 | MEDIUM | 6.5 | 0.6% | Jul 5, 2023 | Uploading files which contain symlinks may have allowed an attacker to trick a user into submitting sensitive data to a ... |
| CVE-2023-37205 | MEDIUM | 6.5 | 0.4% | Jul 5, 2023 | The use of RTL Arabic characters in the address bar may have allowed for URL spoofing. This vulnerability affects Firefo... |
| CVE-2023-37204 | MEDIUM | 6.5 | 0.4% | Jul 5, 2023 | A website could have obscured the fullscreen notification by using an option element by introducing lag via an expensive... |
| CVE-2023-37207 | MEDIUM | 6.5 | 0.7% | Jul 5, 2023 | A website could have obscured the fullscreen notification by using a URL with a scheme handled by an external program, s... |
| CVE-2023-34150 | MEDIUM | 5.3 | 1.1% | Jul 5, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Use of TikaEncodingDetector in Apache Any23 can cause excessive memory usage. |
| CVE-2023-35786 | MEDIUM | 4.9 | 2.5% | Jul 5, 2023 | Zoho ManageEngine ADManager Plus before 7183 allows admin users to exploit an XXE issue to view files. |
| CVE-2023-33201 | MEDIUM | 5.3 | 0.8% | Jul 5, 2023 | Bouncy Castle For Java before 1.74 is affected by an LDAP injection vulnerability. The vulnerability only affects applic... |
| CVE-2023-3506 | MEDIUM | 6.1 | 0.3% | Jul 4, 2023 | A vulnerability was found in Active It Zone Active eCommerce CMS 6.5.0. It has been declared as problematic. This vulner... |
| CVE-2023-3505 | MEDIUM | 6.1 | 0.3% | Jul 4, 2023 | A vulnerability was found in Onest CRM 1.0. It has been classified as problematic. This affects an unknown part of the f... |
| CVE-2023-3139 | MEDIUM | 6.1 | 0.7% | Jul 4, 2023 | The Protect WP Admin WordPress plugin before 4.0 discloses the URL of the admin panel via a redirection of a crafted URL... |
| CVE-2023-2333 | MEDIUM | 6.1 | 0.7% | Jul 4, 2023 | The Ninja Forms Google Sheet Connector WordPress plugin before 1.2.7, gsheetconnector-ninja-forms-pro WordPress plugin t... |
| CVE-2023-2324 | MEDIUM | 6.1 | 0.5% | Jul 4, 2023 | The Elementor Forms Google Sheet Connector WordPress plugin before 1.0.7, gsheetconnector-for-elementor-forms-pro WordPr... |
| CVE-2023-2321 | MEDIUM | 6.1 | 0.5% | Jul 4, 2023 | The WPForms Google Sheet Connector WordPress plugin before 3.4.6, gsheetconnector-wpforms-pro WordPress plugin through 3... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now