2023 CVE Vulnerabilities
31,267 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38268 | HIGH | 8.8 | 0.3% | Dec 1, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to exec... |
| CVE-2023-26024 | MEDIUM | 6.5 | 0.2% | Dec 1, 2023 | IBM Planning Analytics on Cloud Pak for Data 4.0 could allow an attacker on a shared network to obtain sensitive informa... |
| CVE-2023-42006 | MEDIUM | 5.5 | 0.2% | Dec 1, 2023 | IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could allow a local user to obtain sensitive information ... |
| CVE-2023-48893 | HIGH | 8.8 | 0.7% | Dec 1, 2023 | SLiMS (aka SENAYAN Library Management System) through 9.6.1 allows admin/modules/reporting/customs/staff_act.php SQL Inj... |
| CVE-2023-48842 | CRITICAL | 9.8 | 3.7% | Dec 1, 2023 | D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at... |
| CVE-2023-48813 | HIGH | 8.8 | 0.7% | Dec 1, 2023 | Senayan Library Management Systems (Slims) 9 Bulian v9.6.1 is vulnerable to SQL Injection via admin/modules/reporting/cu... |
| CVE-2023-4518 | HIGH | 7.5 | 0.7% | Dec 1, 2023 | A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed ... |
| CVE-2023-49371 | CRITICAL | 9.8 | 3.7% | Dec 1, 2023 | RuoYi up to v4.6 was discovered to contain a SQL injection vulnerability via /system/dept/edit. |
| CVE-2023-45168 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout comman... |
| CVE-2023-6461 | MEDIUM | 6.1 | 0.5% | Dec 1, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository viliusle/minipaint prior to 4.14.0. |
| CVE-2023-5637 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Read Sensitive Strin... |
| CVE-2023-5636 | CRITICAL | 9.8 | 1.7% | Dec 1, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in ArslanSoft Education Portal allows Command Injection. ... |
| CVE-2023-5635 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | Improper Protection for Outbound Error Messages and Alert Signals vulnerability in ArslanSoft Education Portal allows Ac... |
| CVE-2023-5634 | CRITICAL | 9.8 | 0.8% | Dec 1, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ArslanSoft Educati... |
| CVE-2023-28896 | LOW | 2.4 | 0.1% | Dec 1, 2023 | Access to critical Unified Diagnostics Services (UDS) of the Modular Infotainment Platform 3 (MIB3) infotainment is tran... |
| CVE-2023-28895 | MEDIUM | 6.8 | 0.3% | Dec 1, 2023 | The password for access to the debugging console of the PoWer Controller chip (PWC) of the MIB3 infotainment is hard-cod... |
| CVE-2023-6449 | HIGH | 7.2 | 1.7% | Dec 1, 2023 | The Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation... |
| CVE-2023-5427 | HIGH | 7.8 | 0.3% | Dec 1, 2023 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge... |
| CVE-2023-6033 | MEDIUM | 5.4 | 0.6% | Dec 1, 2023 | Improper neutralization of input in Jira integration configuration in GitLab CE/EE, affecting all versions from 15.10 pr... |
| CVE-2023-5995 | HIGH | 7.5 | 0.6% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 16.2 before 16.4.3, all versions starting... |
| CVE-2023-5915 | MEDIUM | 5.3 | 1.2% | Dec 1, 2023 | A vulnerability of Uncontrolled Resource Consumption has been identified in STARDOM provided by Yokogawa Electric Corpor... |
| CVE-2023-5226 | HIGH | 7.5 | 0.5% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions before 16.4.3, all versions starting from 16.5 before 16.5... |
| CVE-2023-4912 | MEDIUM | 6.5 | 0.6% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 10.5 before 16.4.3, all versions starting... |
| CVE-2023-4658 | LOW | 3.1 | 0.4% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 8.13 before 16.4.3, all versions starting... |
| CVE-2023-4317 | MEDIUM | 4.3 | 0.4% | Dec 1, 2023 | An issue has been discovered in GitLab affecting all versions starting from 9.2 before 16.4.3, all versions starting fro... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now