2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-20171MEDIUM6.5Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read...
CVE-2023-20167MEDIUM4.9Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path t...
CVE-2023-20166MEDIUM6.7Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path t...
CVE-2023-20110MEDIUM6.5A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow ...
CVE-2023-20087MEDIUM6.5Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2023-20077MEDIUM6.5Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2023-29857MEDIUM5.3An issue in Teslamate v1.27.1 allows attackers to obtain sensitive information via directly accessing the teslamate link...
CVE-2023-30124MEDIUM5.4LavaLite v9.0.0 is vulnerable to Cross Site Scripting (XSS).
CVE-2023-1859MEDIUM4.7A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux K...
CVE-2023-2731MEDIUM5.5A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw all...
CVE-2023-1972MEDIUM6.5A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss ...
CVE-2023-29837MEDIUM6.1Cross Site Scripting vulnerability found in Exelysis Unified Communication Solution (EUCS) v.1.0 allows a remote attacke...
CVE-2023-31135MEDIUM5.5Dgraph is an open source distributed GraphQL database. Existing Dgraph audit logs are vulnerable to brute force attacks ...
CVE-2023-26044MEDIUM5.3react/http is an event-driven, streaming HTTP client and server implementation for ReactPHP. Previous versions of React...
CVE-2023-2768MEDIUM5.4A vulnerability was found in Sucms 1.0. It has been rated as problematic. Affected by this issue is some unknown functio...
CVE-2023-22348MEDIUM4.3Improper Authorization in RestAPI in Checkmk GmbH's Checkmk versions <2.1.0p28 and <2.2.0b8 allows remote authenticated ...
CVE-2023-31725MEDIUM5.5yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules...
CVE-2023-31723MEDIUM5.5yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nas...
CVE-2023-31699MEDIUM4.8ChurchCRM v4.5.4 is vulnerable to Reflected Cross-Site Scripting (XSS) via image file.
CVE-2023-31698MEDIUM5.4Bludit v3.14.1 is vulnerable to Stored Cross Site Scripting (XSS) via SVG file on site logo. NOTE: the product's securit...
CVE-2023-2679MEDIUM4.3Data leakage in Adobe connector in Snow Software SPE 9.27.0 on Windows allows privileged user to observe other users dat...
CVE-2023-2745MEDIUM5.4WordPress Core is vulnerable to Directory Traversal in versions up to, and including, 6.2, via the ‘wp_lang’ parameter. ...
CVE-2023-2753MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-beta.
CVE-2023-2752MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-beta.
CVE-2023-0864MEDIUM4.3Cleartext Transmission of Sensitive Information vulnerability in ABB Terra AC wallbox (UL40/80A), ABB Terra AC wallbox (...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now