2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33288 | MEDIUM | 4.7 | 0.3% | May 22, 2023 | An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/... |
| CVE-2023-33285 | MEDIUM | 5.3 | 0.8% | May 22, 2023 | An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has... |
| CVE-2023-33281 | MEDIUM | 6.5 | 0.6% | May 22, 2023 | The remote keyfob system on Nissan Sylphy Classic 2021 sends the same RF signal for each door-open request, which allows... |
| CVE-2023-33264 | MEDIUM | 4.3 | 0.7% | May 22, 2023 | In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the... |
| CVE-2023-33254 | MEDIUM | 6.5 | 3.2% | May 21, 2023 | There is an LDAP bind credentials exposure on KACE Systems Deployment and Remote Site appliances 9.0.146. The captured c... |
| CVE-2023-33251 | MEDIUM | 5.5 | 0.2% | May 21, 2023 | When Akka HTTP before 10.5.2 accepts file uploads via the FileUploadDirectives.fileUploadAll directive, the temporary fi... |
| CVE-2023-33250 | MEDIUM | 4.4 | 0.3% | May 21, 2023 | The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c. |
| CVE-2023-2826 | MEDIUM | 5.4 | 0.7% | May 21, 2023 | A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnera... |
| CVE-2023-2824 | MEDIUM | 6.1 | 0.6% | May 20, 2023 | A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as probl... |
| CVE-2023-2822 | MEDIUM | 6.1 | 3.3% | May 20, 2023 | A vulnerability was found in Ellucian Ethos Identity up to 5.10.5. It has been classified as problematic. Affected is an... |
| CVE-2023-2735 | MEDIUM | 5.4 | 0.5% | May 20, 2023 | The Groundhogg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gh_form' shortcode in versions... |
| CVE-2023-2717 | MEDIUM | 4.3 | 0.3% | May 20, 2023 | The Groundhogg plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.7.9.... |
| CVE-2023-2716 | MEDIUM | 5.4 | 0.5% | May 20, 2023 | The Groundhogg plugin for WordPress is vulnerable to unauthorized access of data and modification of data due to a missi... |
| CVE-2023-2715 | MEDIUM | 4.3 | 0.6% | May 20, 2023 | The Groundhogg plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check... |
| CVE-2023-2714 | MEDIUM | 4.3 | 0.5% | May 20, 2023 | The Groundhogg plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check... |
| CVE-2023-32675 | MEDIUM | 5.3 | 0.6% | May 19, 2023 | Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. In contracts with more than one regular no... |
| CVE-2023-2814 | MEDIUM | 6.1 | 0.6% | May 19, 2023 | A vulnerability classified as problematic has been found in SourceCodester Class Scheduling System 1.0. Affected is an u... |
| CVE-2023-1996 | MEDIUM | 6.1 | 0.4% | May 19, 2023 | A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x ... |
| CVE-2023-28950 | MEDIUM | 5.5 | 0.2% | May 19, 2023 | IBM MQ 8.0, 9.0, 9.1, 9.2, and 9.3 could disclose sensitive user information from a trace file if that functionality has... |
| CVE-2023-28529 | MEDIUM | 5.4 | 0.4% | May 19, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows users to ... |
| CVE-2023-22878 | MEDIUM | 5.5 | 0.1% | May 19, 2023 | IBM InfoSphere Information Server 11.7 stores user credentials in plain clear text which can be read by a local user. I... |
| CVE-2023-30775 | MEDIUM | 5.5 | 0.3% | May 19, 2023 | A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSampl... |
| CVE-2023-30774 | MEDIUM | 5.5 | 0.5% | May 19, 2023 | A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES... |
| CVE-2023-28514 | MEDIUM | 5.5 | 0.2% | May 19, 2023 | IBM MQ 8.0, 9.0, and 9.1 could allow a local user to obtain sensitive credential information when a detailed technical e... |
| CVE-2023-31757 | MEDIUM | 5.4 | 0.4% | May 19, 2023 | DedeCMS up to v5.7.108 is vulnerable to XSS in sys_info.php via parameters 'edit___cfg_powerby' and 'edit___cfg_beian' |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now