2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-33288MEDIUM4.7An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/...
CVE-2023-33285MEDIUM5.3An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has...
CVE-2023-33281MEDIUM6.5The remote keyfob system on Nissan Sylphy Classic 2021 sends the same RF signal for each door-open request, which allows...
CVE-2023-33264MEDIUM4.3In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the...
CVE-2023-33254MEDIUM6.5There is an LDAP bind credentials exposure on KACE Systems Deployment and Remote Site appliances 9.0.146. The captured c...
CVE-2023-33251MEDIUM5.5When Akka HTTP before 10.5.2 accepts file uploads via the FileUploadDirectives.fileUploadAll directive, the temporary fi...
CVE-2023-33250MEDIUM4.4The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c.
CVE-2023-2826MEDIUM5.4A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnera...
CVE-2023-2824MEDIUM6.1A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as probl...
CVE-2023-2822MEDIUM6.1A vulnerability was found in Ellucian Ethos Identity up to 5.10.5. It has been classified as problematic. Affected is an...
CVE-2023-2735MEDIUM5.4The Groundhogg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gh_form' shortcode in versions...
CVE-2023-2717MEDIUM4.3The Groundhogg plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.7.9....
CVE-2023-2716MEDIUM5.4The Groundhogg plugin for WordPress is vulnerable to unauthorized access of data and modification of data due to a missi...
CVE-2023-2715MEDIUM4.3The Groundhogg plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check...
CVE-2023-2714MEDIUM4.3The Groundhogg plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check...
CVE-2023-32675MEDIUM5.3Vyper is a pythonic Smart Contract Language for the ethereum virtual machine. In contracts with more than one regular no...
CVE-2023-2814MEDIUM6.1A vulnerability classified as problematic has been found in SourceCodester Class Scheduling System 1.0. Affected is an u...
CVE-2023-1996MEDIUM6.1A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x ...
CVE-2023-28950MEDIUM5.5IBM MQ 8.0, 9.0, 9.1, 9.2, and 9.3 could disclose sensitive user information from a trace file if that functionality has...
CVE-2023-28529MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows users to ...
CVE-2023-22878MEDIUM5.5IBM InfoSphere Information Server 11.7 stores user credentials in plain clear text which can be read by a local user. I...
CVE-2023-30775MEDIUM5.5A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSampl...
CVE-2023-30774MEDIUM5.5A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES...
CVE-2023-28514MEDIUM5.5IBM MQ 8.0, 9.0, and 9.1 could allow a local user to obtain sensitive credential information when a detailed technical e...
CVE-2023-31757MEDIUM5.4DedeCMS up to v5.7.108 is vulnerable to XSS in sys_info.php via parameters 'edit___cfg_powerby' and 'edit___cfg_beian'

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now