2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-2835MEDIUM6.1The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in ...
CVE-2023-1159MEDIUM4.8The Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via service titles in versions up to, and i...
CVE-2023-2062MEDIUM6.2Missing Password Field Masking vulnerability in Mitsubishi Electric Corporation EtherNet/IP configuration tools SW1DNN-E...
CVE-2023-29725MEDIUM5.5The BT21 x BTS Wallpaper app 12 for Android allows unauthorized applications to actively request permission to insert da...
CVE-2023-28147MEDIUM5.5An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operat...
CVE-2023-33764MEDIUM5.4eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a stored cross-site scripting (XSS) vulnerabil...
CVE-2023-33754MEDIUM6.5The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on the number of attempts fo...
CVE-2023-34091MEDIUM6.5Kyverno is a policy engine designed for Kubernetes. In versions of Kyverno prior to 1.10.0, resources which have the `de...
CVE-2023-32717MEDIUM4.3On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and in Splunk Cloud Platform versions below 9.0.2303.100,...
CVE-2023-32716MEDIUM6.5In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, an...
CVE-2023-32715MEDIUM6.1In the Splunk App for Lookup File Editing versions below 4.0.1, a user can insert potentially malicious JavaScript code ...
CVE-2023-32711MEDIUM5.4In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, a Splunk dashboard view lets a low-privileged user exploi...
CVE-2023-32710MEDIUM5.3In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and in Splunk Cloud Platform versions below 9.0.2303.100,...
CVE-2023-32709MEDIUM4.3In Splunk Enterprise versions below 9.0.5, 8.2.11. and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, a ...
CVE-2023-32706MEDIUM6.5On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, an unauthenticated attacker can send specially-crafted me...
CVE-2023-32324MEDIUM5.5OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability w...
CVE-2023-28043MEDIUM6.5 Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path. A remote low privile...
CVE-2023-3035MEDIUM5.4A vulnerability has been found in Guangdong Pythagorean OA Office System up to 4.50.31 and classified as problematic. Af...
CVE-2023-33546MEDIUM5.5Janino 3.1.9 and earlier are subject to denial of service (DOS) attacks when using the expression evaluator.guess parame...
CVE-2023-33544MEDIUM5.5hawtio 2.17.2 is vulnerable to Path Traversal. it is possible to input malicious zip files, which can result in the high...
CVE-2023-32181MEDIUM6.5A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf allows for D...
CVE-2023-22652MEDIUM6.5A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf leads to DoS...
CVE-2023-33719MEDIUM5.5mp4v2 v2.1.3 was discovered to contain a memory leak via MP4SdpAtom::Read() at atom_sdp.cpp
CVE-2023-33716MEDIUM5.5mp4v2 v2.1.3 was discovered to contain a memory leak via the class MP4StringProperty at mp4property.cpp.
CVE-2023-33461MEDIUM5.5iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for fu...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now