2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2941 | MEDIUM | 4.3 | 0.6% | May 30, 2023 | Inappropriate implementation in Extensions API in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced... |
| CVE-2023-2940 | MEDIUM | 6.5 | 0.7% | May 30, 2023 | Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a us... |
| CVE-2023-2938 | MEDIUM | 4.3 | 0.9% | May 30, 2023 | Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who... |
| CVE-2023-2937 | MEDIUM | 4.3 | 0.9% | May 30, 2023 | Inappropriate implementation in Picture In Picture in Google Chrome prior to 114.0.5735.90 allowed a remote attacker who... |
| CVE-2023-33181 | MEDIUM | 5.3 | 0.5% | May 30, 2023 | Xibo is a content management system (CMS). Starting in version 3.0.0 and prior to version 3.3.5, some API routes will pr... |
| CVE-2023-33180 | MEDIUM | 6.5 | 0.6% | May 30, 2023 | Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and p... |
| CVE-2023-33179 | MEDIUM | 6.5 | 0.6% | May 30, 2023 | Xibo is a content management system (CMS). An SQL injection vulnerability was discovered starting in version 3.2.0 and p... |
| CVE-2023-33178 | MEDIUM | 6.5 | 0.6% | May 30, 2023 | Xibo is a content management system (CMS). An SQL injection vulnerability was discovered in the `/dataset/data/{id}` API... |
| CVE-2023-32218 | MEDIUM | 6.1 | 0.3% | May 30, 2023 | Avaya IX Workforce Engagement v15.2.7.1195 - CWE-601: URL Redirection to Untrusted Site ('Open Redirect') |
| CVE-2023-31187 | MEDIUM | 6.5 | 0.5% | May 30, 2023 | Avaya IX Workforce Engagement v15.2.7.1195 - CWE-522: Insufficiently Protected Credentials |
| CVE-2023-31186 | MEDIUM | 5.3 | 0.4% | May 30, 2023 | Avaya IX Workforce Engagement v15.2.7.1195 - User Enumeration - Observable Response Discrepancy |
| CVE-2023-29735 | MEDIUM | 5.5 | 0.3% | May 30, 2023 | An issue found in edjing Mix v.7.09.01 for Android allows a local attacker to cause a denial of service via the database... |
| CVE-2023-23956 | MEDIUM | 5.4 | 3.1% | May 30, 2023 | A user can supply malicious HTML and JavaScript code that will be executed in the client browser |
| CVE-2023-23561 | MEDIUM | 5.5 | 0.1% | May 30, 2023 | Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive i... |
| CVE-2023-32699 | MEDIUM | 6.5 | 0.6% | May 30, 2023 | MeterSphere is an open source continuous testing platform. Version 2.9.1 and prior are vulnerable to denial of service. ... |
| CVE-2023-1711 | MEDIUM | 4.4 | 0.2% | May 30, 2023 | A vulnerability exists in a FOXMAN-UN and UNEM logging component, it only affects systems that use remote authentication... |
| CVE-2023-33656 | MEDIUM | 5.5 | 0.4% | May 30, 2023 | A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker cou... |
| CVE-2023-32689 | MEDIUM | 6.5 | 0.6% | May 30, 2023 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Versions prior t... |
| CVE-2023-33974 | MEDIUM | 5.9 | 0.7% | May 30, 2023 | RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ... |
| CVE-2023-29737 | MEDIUM | 5.5 | 0.3% | May 30, 2023 | An issue found in Wave Animated Keyboard Emoji v.1.70.7 for Android allows a local attacker to cause a denial of service... |
| CVE-2023-23754 | MEDIUM | 6.1 | 0.4% | May 30, 2023 | An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue w... |
| CVE-2023-32448 | MEDIUM | 5.5 | 0.1% | May 30, 2023 | PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains License Key Stored in Cleartext vulnerability. A local user wit... |
| CVE-2023-24568 | MEDIUM | 4.3 | 0.2% | May 30, 2023 | Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which ... |
| CVE-2023-20884 | MEDIUM | 6.1 | 0.3% | May 30, 2023 | VMware Workspace ONE Access and VMware Identity Manager contain an insecure redirect vulnerability. An unauthenticated m... |
| CVE-2023-2981 | MEDIUM | 5.4 | 0.7% | May 30, 2023 | A vulnerability, which was classified as problematic, has been found in Abstrium Pydio Cells 4.2.0. This issue affects s... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now