2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2835 | MEDIUM | 6.1 | 0.7% | Jun 2, 2023 | The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in ... |
| CVE-2023-1159 | MEDIUM | 4.8 | 0.4% | Jun 2, 2023 | The Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via service titles in versions up to, and i... |
| CVE-2023-2062 | MEDIUM | 6.2 | 0.3% | Jun 2, 2023 | Missing Password Field Masking vulnerability in Mitsubishi Electric Corporation EtherNet/IP configuration tools SW1DNN-E... |
| CVE-2023-29725 | MEDIUM | 5.5 | 0.4% | Jun 2, 2023 | The BT21 x BTS Wallpaper app 12 for Android allows unauthorized applications to actively request permission to insert da... |
| CVE-2023-28147 | MEDIUM | 5.5 | 0.2% | Jun 2, 2023 | An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operat... |
| CVE-2023-33764 | MEDIUM | 5.4 | 0.5% | Jun 1, 2023 | eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a stored cross-site scripting (XSS) vulnerabil... |
| CVE-2023-33754 | MEDIUM | 6.5 | 0.7% | Jun 1, 2023 | The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on the number of attempts fo... |
| CVE-2023-34091 | MEDIUM | 6.5 | 0.5% | Jun 1, 2023 | Kyverno is a policy engine designed for Kubernetes. In versions of Kyverno prior to 1.10.0, resources which have the `de... |
| CVE-2023-32717 | MEDIUM | 4.3 | 0.4% | Jun 1, 2023 | On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and in Splunk Cloud Platform versions below 9.0.2303.100,... |
| CVE-2023-32716 | MEDIUM | 6.5 | 0.6% | Jun 1, 2023 | In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, an... |
| CVE-2023-32715 | MEDIUM | 6.1 | 0.3% | Jun 1, 2023 | In the Splunk App for Lookup File Editing versions below 4.0.1, a user can insert potentially malicious JavaScript code ... |
| CVE-2023-32711 | MEDIUM | 5.4 | 0.4% | Jun 1, 2023 | In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, a Splunk dashboard view lets a low-privileged user exploi... |
| CVE-2023-32710 | MEDIUM | 5.3 | 0.4% | Jun 1, 2023 | In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and in Splunk Cloud Platform versions below 9.0.2303.100,... |
| CVE-2023-32709 | MEDIUM | 4.3 | 0.4% | Jun 1, 2023 | In Splunk Enterprise versions below 9.0.5, 8.2.11. and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, a ... |
| CVE-2023-32706 | MEDIUM | 6.5 | 0.6% | Jun 1, 2023 | On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, an unauthenticated attacker can send specially-crafted me... |
| CVE-2023-32324 | MEDIUM | 5.5 | 1.5% | Jun 1, 2023 | OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability w... |
| CVE-2023-28043 | MEDIUM | 6.5 | 0.3% | Jun 1, 2023 | Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path. A remote low privile... |
| CVE-2023-3035 | MEDIUM | 5.4 | 0.6% | Jun 1, 2023 | A vulnerability has been found in Guangdong Pythagorean OA Office System up to 4.50.31 and classified as problematic. Af... |
| CVE-2023-33546 | MEDIUM | 5.5 | 0.3% | Jun 1, 2023 | Janino 3.1.9 and earlier are subject to denial of service (DOS) attacks when using the expression evaluator.guess parame... |
| CVE-2023-33544 | MEDIUM | 5.5 | 0.3% | Jun 1, 2023 | hawtio 2.17.2 is vulnerable to Path Traversal. it is possible to input malicious zip files, which can result in the high... |
| CVE-2023-32181 | MEDIUM | 6.5 | 0.6% | Jun 1, 2023 | A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf allows for D... |
| CVE-2023-22652 | MEDIUM | 6.5 | 0.6% | Jun 1, 2023 | A Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in openSUSE libeconf leads to DoS... |
| CVE-2023-33719 | MEDIUM | 5.5 | 0.3% | Jun 1, 2023 | mp4v2 v2.1.3 was discovered to contain a memory leak via MP4SdpAtom::Read() at atom_sdp.cpp |
| CVE-2023-33716 | MEDIUM | 5.5 | 0.2% | Jun 1, 2023 | mp4v2 v2.1.3 was discovered to contain a memory leak via the class MP4StringProperty at mp4property.cpp. |
| CVE-2023-33461 | MEDIUM | 5.5 | 0.4% | Jun 1, 2023 | iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for fu... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now