2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3144 | MEDIUM | 5.4 | 0.6% | Jun 7, 2023 | A vulnerability classified as problematic was found in SourceCodester Online Discussion Forum Site 1.0. Affected by this... |
| CVE-2023-3143 | MEDIUM | 5.4 | 0.6% | Jun 7, 2023 | A vulnerability classified as problematic has been found in SourceCodester Online Discussion Forum Site 1.0. Affected is... |
| CVE-2023-3142 | MEDIUM | 5.4 | 0.3% | Jun 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 2.0. |
| CVE-2023-2878 | MEDIUM | 5.5 | 0.4% | Jun 7, 2023 | Kubernetes secrets-store-csi-driver in versions before 1.3.3 discloses service account tokens in logs. |
| CVE-2023-3140 | MEDIUM | 4.3 | 0.4% | Jun 7, 2023 | Missing HTTP headers (X-Frame-Options, Content-Security-Policy) in KNIME Business Hub before 1.4.0 has left users vulne... |
| CVE-2023-2541 | MEDIUM | 5.3 | 0.6% | Jun 7, 2023 | The Web Frontend of KNIME Business Hub before 1.4.0 allows an unauthenticated remote attacker to access internals about ... |
| CVE-2023-2187 | MEDIUM | 5.3 | 0.6% | Jun 7, 2023 | On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send broadcast events to... |
| CVE-2023-0668 | MEDIUM | 6.5 | 2.3% | Jun 7, 2023 | Due to failure in validating the length provided by an attacker-crafted IEEE-C37.118 packet, Wireshark version 4.0.5 and... |
| CVE-2023-0667 | MEDIUM | 6.5 | 2.0% | Jun 7, 2023 | Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior,... |
| CVE-2023-0666 | MEDIUM | 6.5 | 2.3% | Jun 7, 2023 | Due to failure in validating the length provided by an attacker-crafted RTPS packet, Wireshark version 4.0.5 and prior, ... |
| CVE-2023-3126 | MEDIUM | 4.3 | 0.7% | Jun 7, 2023 | The B2BKing plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the '... |
| CVE-2023-3125 | MEDIUM | 6.5 | 0.7% | Jun 7, 2023 | The B2BKing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on... |
| CVE-2023-33684 | MEDIUM | 5.7 | 0.3% | Jun 6, 2023 | Weak session management in DB Elettronica Telecomunicazioni SpA SFT DAB 600/C Firmware: 1.9.3 Bios firmware: 7.1 (Apr 19... |
| CVE-2023-33477 | MEDIUM | 6.5 | 1.0% | Jun 6, 2023 | In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special pa... |
| CVE-2023-2253 | MEDIUM | 6.5 | 0.9% | Jun 6, 2023 | A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the m... |
| CVE-2023-2157 | MEDIUM | 5.5 | 1.0% | Jun 6, 2023 | A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to the application crashin... |
| CVE-2023-1621 | MEDIUM | 6.5 | 0.9% | Jun 6, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions startin... |
| CVE-2023-33977 | MEDIUM | 5.4 | 0.9% | Jun 6, 2023 | Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS allows users to uplo... |
| CVE-2023-33958 | MEDIUM | 6.5 | 0.5% | Jun 6, 2023 | notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry... |
| CVE-2023-33957 | MEDIUM | 5.7 | 0.5% | Jun 6, 2023 | notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry... |
| CVE-2023-32683 | MEDIUM | 5.4 | 0.6% | Jun 6, 2023 | Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. A discovered oEmbed or image URL c... |
| CVE-2023-32682 | MEDIUM | 5.4 | 0.8% | Jun 6, 2023 | Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. In affected versions it may be pos... |
| CVE-2023-2801 | MEDIUM | 5.3 | 0.7% | Jun 6, 2023 | Grafana is an open-source platform for monitoring and observability. Using public dashboards users can query multiple ... |
| CVE-2023-2183 | MEDIUM | 6.4 | 1.0% | Jun 6, 2023 | Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available ... |
| CVE-2023-22833 | MEDIUM | 6.5 | 0.4% | Jun 6, 2023 | Palantir Foundry deployments running Lime2 versions between 2.519.0 and 2.532.0 were vulnerable a bug that allowed authe... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now