2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30955 | MEDIUM | 5.4 | 0.3% | Jun 29, 2023 | A security defect was identified in Foundry workspace-server that enabled a user to bypass an authorization check and vi... |
| CVE-2023-30946 | MEDIUM | 4.3 | 0.3% | Jun 29, 2023 | A security defect was identified in Foundry Issues. If a user was added to an issue on a resource that they did not have... |
| CVE-2023-36488 | MEDIUM | 5.4 | 0.3% | Jun 29, 2023 | ILIAS 7.21 and 8.0_beta1 through 8.2 is vulnerable to stored Cross Site Scripting (XSS). |
| CVE-2023-34658 | MEDIUM | 5.3 | 0.4% | Jun 29, 2023 | Telegram v9.6.3 on iOS allows attackers to hide critical information on the User Interface via calling the function SFSa... |
| CVE-2023-37256 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | An issue was discovered in the Cargo extension for MediaWiki through 1.39.3. It allows one to store javascript: URLs in ... |
| CVE-2023-37255 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | An issue was discovered in the CheckUser extension for MediaWiki through 1.39.3. In Special:CheckUser, a check of the "g... |
| CVE-2023-37254 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | An issue was discovered in the Cargo extension for MediaWiki through 1.39.3. XSS can occur in Special:CargoQuery via a c... |
| CVE-2023-37251 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | An issue was discovered in the GoogleAnalyticsMetrics extension for MediaWiki through 1.39.3. The googleanalyticstrackur... |
| CVE-2023-34599 | MEDIUM | 6.1 | 1.9% | Jun 29, 2023 | Multiple Cross-Site Scripting (XSS) vulnerabilities have been identified in Gibbon v25.0.0, which enable attackers to ex... |
| CVE-2023-34486 | MEDIUM | 6.1 | 0.6% | Jun 29, 2023 | itsourcecode Online Hotel Management System Project In PHP v1.0.0 is vulnerable to Cross Site Scripting (XSS). Remote co... |
| CVE-2023-36617 | MEDIUM | 5.3 | 1.5% | Jun 29, 2023 | A ReDoS issue was discovered in the URI component before 0.12.2 for Ruby. The URI parser mishandles invalid URLs that ha... |
| CVE-2023-34834 | MEDIUM | 5.3 | 3.3% | Jun 29, 2023 | A Directory Browsing vulnerability in MCL-Net version 4.3.5.8788 webserver running on default port 5080, allows attacker... |
| CVE-2023-34831 | MEDIUM | 5.4 | 0.4% | Jun 29, 2023 | The "Submission Web Form" of Turnitin LTI tool/plugin version 1.3 is affected by HTML Injection attacks. The security is... |
| CVE-2023-34734 | MEDIUM | 4.8 | 0.4% | Jun 29, 2023 | Annet AC Centralized Management Platform 1.02.040 is vulnerable to Stored Cross-Site Scripting (XSS) . |
| CVE-2023-34648 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | A Cross Site Scripting vulnerability in PHPgurukl User Registration Login and User Management System with admin panel v.... |
| CVE-2023-1602 | MEDIUM | 4.8 | 0.3% | Jun 29, 2023 | The Short URL plugin for WordPress is vulnerable to stored Cross-Site Scripting via the 'comment' parameter due to insuf... |
| CVE-2023-36476 | MEDIUM | 5.5 | 0.2% | Jun 29, 2023 | calamares-nixos-extensions provides Calamares branding and modules for NixOS, a distribution of GNU/Linux. Users of cala... |
| CVE-2023-33661 | MEDIUM | 6.1 | 0.4% | Jun 29, 2023 | Multiple cross-site scripting (XSS) vulnerabilities were discovered in Church CRM v4.5.3 in GroupReports.php via GroupRo... |
| CVE-2023-3359 | MEDIUM | 5.5 | 0.2% | Jun 28, 2023 | An issue was discovered in the Linux kernel brcm_nvram_parse in drivers/nvmem/brcm_nvram.c. Lacks for the check of the r... |
| CVE-2023-3358 | MEDIUM | 5.5 | 0.2% | Jun 28, 2023 | A null pointer dereference was found in the Linux kernel's Integrated Sensor Hub (ISH) driver. This issue could allow a ... |
| CVE-2023-3357 | MEDIUM | 5.5 | 0.2% | Jun 28, 2023 | A NULL pointer dereference flaw was found in the Linux kernel AMD Sensor Fusion Hub driver. This flaw allows a local use... |
| CVE-2023-36474 | MEDIUM | 6.1 | 0.4% | Jun 28, 2023 | Interactsh is an open-source tool for detecting out-of-band interactions. Domains configured with interactsh server prio... |
| CVE-2023-34647 | MEDIUM | 6.1 | 0.3% | Jun 28, 2023 | PHPgurukl Hostel Management System v.1.0 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2023-3439 | MEDIUM | 4.7 | 0.3% | Jun 28, 2023 | A flaw was found in the MCTP protocol in the Linux kernel. The function mctp_unregister() reclaims the device's relevant... |
| CVE-2023-3355 | MEDIUM | 5.5 | 0.3% | Jun 28, 2023 | A NULL pointer dereference flaw was found in the Linux kernel's drivers/gpu/drm/msm/msm_gem_submit.c code in the submit_... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now