2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3144MEDIUM5.4A vulnerability classified as problematic was found in SourceCodester Online Discussion Forum Site 1.0. Affected by this...
CVE-2023-3143MEDIUM5.4A vulnerability classified as problematic has been found in SourceCodester Online Discussion Forum Site 1.0. Affected is...
CVE-2023-3142MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 2.0.
CVE-2023-2878MEDIUM5.5Kubernetes secrets-store-csi-driver in versions before 1.3.3 discloses service account tokens in logs.
CVE-2023-3140MEDIUM4.3Missing HTTP headers (X-Frame-Options, Content-Security-Policy) in KNIME Business Hub before 1.4.0 has left users vulne...
CVE-2023-2541MEDIUM5.3The Web Frontend of KNIME Business Hub before 1.4.0 allows an unauthenticated remote attacker to access internals about ...
CVE-2023-2187MEDIUM5.3On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send broadcast events to...
CVE-2023-0668MEDIUM6.5Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and...
CVE-2023-0667MEDIUM6.5Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior,...
CVE-2023-0666MEDIUM6.5Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, ...
CVE-2023-3126MEDIUM4.3The B2BKing plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the '...
CVE-2023-3125MEDIUM6.5The B2BKing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on...
CVE-2023-33684MEDIUM5.7Weak session management in DB Elettronica Telecomunicazioni SpA SFT DAB 600/C Firmware: 1.9.3 Bios firmware: 7.1 (Apr 19...
CVE-2023-33477MEDIUM6.5In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special pa...
CVE-2023-2253MEDIUM6.5A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the m...
CVE-2023-2157MEDIUM5.5A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to the application crashin...
CVE-2023-1621MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions startin...
CVE-2023-33977MEDIUM5.4Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS allows users to uplo...
CVE-2023-33958MEDIUM6.5notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry...
CVE-2023-33957MEDIUM5.7notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry...
CVE-2023-32683MEDIUM5.4Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. A discovered oEmbed or image URL c...
CVE-2023-32682MEDIUM5.4Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. In affected versions it may be pos...
CVE-2023-2801MEDIUM5.3Grafana is an open-source platform for monitoring and observability. Using public dashboards users can query multiple ...
CVE-2023-2183MEDIUM6.4Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available ...
CVE-2023-22833MEDIUM6.5Palantir Foundry deployments running Lime2 versions between 2.519.0 and 2.532.0 were vulnerable a bug that allowed authe...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now