2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-30758MEDIUM5.4Cross-site scripting vulnerability in Pleasanter 1.3.38.1 and earlier allows a remote authenticated attacker to inject a...
CVE-2023-28824MEDIUM4.9Server-side request forgery vulnerability exists in CONPROSYS HMI System (CHS) versions prior to 3.5.3. A user who can a...
CVE-2023-28651MEDIUM4.8Cross-site scripting vulnerability exists in CONPROSYS HMI System (CHS) versions prior to 3.5.3. If a user who can acces...
CVE-2023-3026MEDIUM6.1Cross-site Scripting (XSS) - Stored in GitHub repository jgraph/drawio prior to 21.2.8.
CVE-2023-2985MEDIUM5.5A use after free flaw was found in hfsplus_put_super in fs/hfsplus/super.c in the Linux Kernel. This flaw could allow a ...
CVE-2023-23954MEDIUM5.4Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Stored Cross-Site Scr...
CVE-2023-3006MEDIUM5.5A known cache speculation vulnerability, known as Branch History Injection (BHI) or Spectre-BHB, becomes actual again fo...
CVE-2023-34256MEDIUM5.5An issue was discovered in the Linux kernel before 6.3.3. There is an out-of-bounds read in crc16 in lib/crc16.c when ca...
CVE-2023-33732MEDIUM6.1Cross Site Scripting (XSS) in the New Policy form in Microworld Technologies eScan management console 14.0.1400.2281 all...
CVE-2023-33287MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the Inline Table Editing application before 3.8.0 for Confluence al...
CVE-2023-34088MEDIUM5.4Collabora Online is a collaborative online office suite. A stored cross-site scripting (XSS) vulnerability was found in ...
CVE-2023-33979MEDIUM6.5gpt_academic provides a graphical interface for ChatGPT/GLM. A vulnerability was found in gpt_academic 3.37 and prior. T...
CVE-2023-33971MEDIUM5.4Formcreator is a GLPI plugin which allow creation of custom forms and the creation of one or more tickets when the form ...
CVE-2023-3021MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository mkucej/i-librarian-free prior to 5.10.4.
CVE-2023-3020MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository mkucej/i-librarian-free prior to 5.10.4.
CVE-2023-3017MEDIUM5.4A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been classified as problematic...
CVE-2023-2758MEDIUM5.3A denial of service vulnerability exists in Contec CONPROSYS HMI System versions 3.5.2 and prior. When there is a time-z...
CVE-2023-3016MEDIUM6.1A vulnerability was found in yiwent Vip Video Analysis 1.0 and classified as problematic. Affected by this issue is some...
CVE-2023-3014MEDIUM6.1A vulnerability, which was classified as problematic, was found in BeipyVideoResolution up to 2.6. Affected is an unknow...
CVE-2023-34229MEDIUM5.4In JetBrains TeamCity before 2023.05 stored XSS in GitLab Connection page was possible
CVE-2023-34228MEDIUM6.5In JetBrains TeamCity before 2023.05 authentication checks were missing – 2FA was not checked for some sensitive account...
CVE-2023-34226MEDIUM6.1In JetBrains TeamCity before 2023.05 reflected XSS in the Subscriptions page was possible
CVE-2023-34225MEDIUM5.4In JetBrains TeamCity before 2023.05 stored XSS in the NuGet feed page was possible
CVE-2023-34224MEDIUM4.8In JetBrains TeamCity before 2023.05 open redirect during oAuth configuration was possible
CVE-2023-34223MEDIUM5.3In JetBrains TeamCity before 2023.05 parameters of the "password" type from build dependencies could be logged in some c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now