2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-5872MEDIUM4.3In Wago Smart Designer in versions up to 2.33.1 a low privileged remote attacker may enumerate projects and usernames th...
CVE-2023-3634HIGH8.8In products of the MSE6 product-family by Festo a remote authenticated, low privileged attacker could use functions of u...
CVE-2023-54364MEDIUM6.1Joomla HikaShop 4.7.4 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to i...
CVE-2023-54363MEDIUM6.1Joomla Solidres 2.13.3 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to ...
CVE-2023-54362MEDIUM6.1Joomla VirtueMart Shopping-Cart 4.0.12 contains a reflected cross-site scripting vulnerability that allows attackers to ...
CVE-2023-54361MEDIUM6.1Joomla iProperty Real Estate 4.1.1 contains a reflected cross-site scripting vulnerability that allows attackers to inje...
CVE-2023-54360MEDIUM6.1Joomla JLex Review 6.0.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicio...
CVE-2023-54359HIGH8.8WordPress adivaha Travel Plugin 2.3 contains a time-based blind SQL injection vulnerability that allows unauthenticated ...
CVE-2023-54358MEDIUM6.1WordPress adivaha Travel Plugin 2.3 contains a reflected cross-site scripting vulnerability that allows unauthenticated ...
CVE-2023-46945CRITICAL9.1QD 20230821 is vulnerable to Server-side request forgery (SSRF) via a crafted request
CVE-2023-7343HIGH8.5Hirschmann Industrial HiVision versions 05.0.00 through 08.3.01 prior to 08.3.02 contain an arbitrary code execution vul...
CVE-2023-7342HIGH8.8HiSecOS web server versions 03.4.00 prior to 04.1.00 contains a privilege escalation vulnerability that allows authentic...
CVE-2023-7340MEDIUM4.3Wazuh authd contains a heap-buffer overflow vulnerability that allows attackers to cause memory corruption and malformed...
CVE-2023-7339MEDIUM6.5Stack-based buffer overflow vulnerability in Softing Industrial Automation GmbH gateways allows overflow buffers. This i...
CVE-2023-7338HIGH7.7Ruckus Unleashed contains a remote code execution vulnerability in the web-based management interface that allows authen...
CVE-2023-40693MEDIUM5.4IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, and 6.2.0.0 through 6.2.0.5_1, 6.2....
CVE-2023-43010HIGH8.8The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14....
CVE-2023-27573CRITICAL9.8netbox-docker before 2.5.0 has a superuser account with default credentials (admin password for the admin account, and 0...
CVE-2023-7337HIGH7.5The JS Help Desk – AI-Powered Support & Ticketing System plugin for WordPress is vulnerable to SQL Injection via the 'js...
CVE-2023-31044HIGH8.8An issue was discovered in Nokia Impact before Mobile 23_FP1. In Impact DM 19.11 onwards, a remote authenticated user, u...
CVE-2023-31364HIGH8.3Improper handling of direct memory writes in the input-output memory management unit could allow a malicious guest virtu...
CVE-2023-38005MEDIUM4.3IBM Cloud Pak System 2.3.3.6, 2.3.3.7, 2.3.4.0, 2.3.4.1, and 2.3.5.0 could allow an authenticated user to perform unauth...
CVE-2023-38265MEDIUM5.3IBM Cloud Pak System 2.3.3.6, 2.3.3.7, 2.3.4.0, 2.3.4.1, and 2.3.5.0 could disclose folder location information to an un...
CVE-2023-45291Rejected reason: reserved but not needed
CVE-2023-31323HIGH8.4Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Gl...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now