2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20171 | MEDIUM | 6.5 | 0.4% | May 18, 2023 | Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read... |
| CVE-2023-20167 | MEDIUM | 4.9 | 0.5% | May 18, 2023 | Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path t... |
| CVE-2023-20166 | MEDIUM | 6.7 | 0.2% | May 18, 2023 | Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path t... |
| CVE-2023-20110 | MEDIUM | 6.5 | 1.2% | May 18, 2023 | A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow ... |
| CVE-2023-20087 | MEDIUM | 6.5 | 0.8% | May 18, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2023-20077 | MEDIUM | 6.5 | 0.8% | May 18, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2023-29857 | MEDIUM | 5.3 | 0.5% | May 18, 2023 | An issue in Teslamate v1.27.1 allows attackers to obtain sensitive information via directly accessing the teslamate link... |
| CVE-2023-30124 | MEDIUM | 5.4 | 0.4% | May 18, 2023 | LavaLite v9.0.0 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2023-1859 | MEDIUM | 4.7 | 0.2% | May 17, 2023 | A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux K... |
| CVE-2023-2731 | MEDIUM | 5.5 | 0.4% | May 17, 2023 | A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw all... |
| CVE-2023-1972 | MEDIUM | 6.5 | 0.9% | May 17, 2023 | A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss ... |
| CVE-2023-29837 | MEDIUM | 6.1 | 0.5% | May 17, 2023 | Cross Site Scripting vulnerability found in Exelysis Unified Communication Solution (EUCS) v.1.0 allows a remote attacke... |
| CVE-2023-31135 | MEDIUM | 5.5 | 0.2% | May 17, 2023 | Dgraph is an open source distributed GraphQL database. Existing Dgraph audit logs are vulnerable to brute force attacks ... |
| CVE-2023-26044 | MEDIUM | 5.3 | 0.7% | May 17, 2023 | react/http is an event-driven, streaming HTTP client and server implementation for ReactPHP. Previous versions of React... |
| CVE-2023-2768 | MEDIUM | 5.4 | 0.6% | May 17, 2023 | A vulnerability was found in Sucms 1.0. It has been rated as problematic. Affected by this issue is some unknown functio... |
| CVE-2023-22348 | MEDIUM | 4.3 | 0.6% | May 17, 2023 | Improper Authorization in RestAPI in Checkmk GmbH's Checkmk versions <2.1.0p28 and <2.2.0b8 allows remote authenticated ... |
| CVE-2023-31725 | MEDIUM | 5.5 | 0.3% | May 17, 2023 | yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules... |
| CVE-2023-31723 | MEDIUM | 5.5 | 0.3% | May 17, 2023 | yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nas... |
| CVE-2023-31699 | MEDIUM | 4.8 | 1.5% | May 17, 2023 | ChurchCRM v4.5.4 is vulnerable to Reflected Cross-Site Scripting (XSS) via image file. |
| CVE-2023-31698 | MEDIUM | 5.4 | 2.6% | May 17, 2023 | Bludit v3.14.1 is vulnerable to Stored Cross Site Scripting (XSS) via SVG file on site logo. NOTE: the product's securit... |
| CVE-2023-2679 | MEDIUM | 4.3 | 0.4% | May 17, 2023 | Data leakage in Adobe connector in Snow Software SPE 9.27.0 on Windows allows privileged user to observe other users dat... |
| CVE-2023-2745 | MEDIUM | 5.4 | 79.5% | May 17, 2023 | WordPress Core is vulnerable to Directory Traversal in versions up to, and including, 6.2, via the ‘wp_lang’ parameter. ... |
| CVE-2023-2753 | MEDIUM | 5.4 | 0.6% | May 17, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-beta. |
| CVE-2023-2752 | MEDIUM | 5.4 | 0.5% | May 17, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-beta. |
| CVE-2023-0864 | MEDIUM | 4.3 | 0.2% | May 17, 2023 | Cleartext Transmission of Sensitive Information vulnerability in ABB Terra AC wallbox (UL40/80A), ABB Terra AC wallbox (... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now