2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-2941MEDIUM4.3Inappropriate implementation in Extensions API in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced...
CVE-2023-2940MEDIUM6.5Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a us...
CVE-2023-2938MEDIUM4.3Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who...
CVE-2023-2937MEDIUM4.3Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who...
CVE-2023-33181MEDIUM5.3Xibo is a content management system (CMS). Starting in version 3.0.0 and prior to version 3.3.5, some API routes will pr...
CVE-2023-33180MEDIUM6.5Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and p...
CVE-2023-33179MEDIUM6.5Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and p...
CVE-2023-33178MEDIUM6.5Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the `/dataset/data/{id}` API...
CVE-2023-32218MEDIUM6.1Avaya IX Workforce Engagement v15.2.7.1195 - CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CVE-2023-31187MEDIUM6.5Avaya IX Workforce Engagement v15.2.7.1195 - CWE-522: Insufficiently Protected Credentials
CVE-2023-31186MEDIUM5.3Avaya IX Workforce Engagement v15.2.7.1195 - User Enumeration - Observable Response Discrepancy
CVE-2023-29735MEDIUM5.5An issue found in edjing Mix v.7.09.01 for Android allows a local attacker to cause a denial of service via the database...
CVE-2023-23956MEDIUM5.4A user can supply malicious HTML and JavaScript code that will be executed in the client browser
CVE-2023-23561MEDIUM5.5Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive i...
CVE-2023-32699MEDIUM6.5MeterSphere is an open source continuous testing platform. Version 2.9.1 and prior are vulnerable to denial of service. ...
CVE-2023-1711MEDIUM4.4A vulnerability exists in a FOXMAN-UN and UNEM logging component, it only affects systems that use remote authentication...
CVE-2023-33656MEDIUM5.5A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker cou...
CVE-2023-32689MEDIUM6.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Versions prior t...
CVE-2023-33974MEDIUM5.9RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-29737MEDIUM5.5An issue found in Wave Animated Keyboard Emoji v.1.70.7 for Android allows a local attacker to cause a denial of service...
CVE-2023-23754MEDIUM6.1An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue w...
CVE-2023-32448MEDIUM5.5 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains License Key Stored in Cleartext vulnerability. A local user wit...
CVE-2023-24568MEDIUM4.3 Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which ...
CVE-2023-20884MEDIUM6.1VMware Workspace ONE Access and VMware Identity Manager contain an insecure redirect vulnerability. An unauthenticated m...
CVE-2023-2981MEDIUM5.4A vulnerability, which was classified as problematic, has been found in Abstrium Pydio Cells 4.2.0. This issue affects s...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now