2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6274 | CRITICAL | 9.8 | 2.9% | Nov 24, 2023 | A vulnerability was found in Byzoro Smart S80 up to 20231108. It has been declared as critical. Affected by this vulnera... |
| CVE-2023-46575 | CRITICAL | 9.8 | 1.3% | Nov 24, 2023 | A SQL injection vulnerability exists in Meshery prior to version v0.6.179, enabling a remote attacker to retrieve sensit... |
| CVE-2023-38914 | — | — | — | Nov 24, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-6251 | LOW | 3.5 | 0.2% | Nov 24, 2023 | Cross-site Request Forgery (CSRF) in Checkmk < 2.2.0p15, < 2.1.0p37, <= 2.0.0p39 allow an authenticated attacker to dele... |
| CVE-2023-48796 | HIGH | 7.5 | 1.2% | Nov 24, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler. The information ex... |
| CVE-2023-44303 | HIGH | 7.5 | 0.5% | Nov 24, 2023 | RVTools, Version 3.9.2 and above, contain a sensitive data exposure vulnerability in the password encryption utility (R... |
| CVE-2023-33706 | MEDIUM | 6.5 | 0.6% | Nov 24, 2023 | SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter t... |
| CVE-2023-26279 | HIGH | 7.8 | 0.2% | Nov 24, 2023 | IBM QRadar WinCollect Agent 10.0 through 10.1.7 could allow a local user to perform unauthorized actions due to imprope... |
| CVE-2023-49216 | MEDIUM | 5.4 | 0.4% | Nov 23, 2023 | Usedesk before 1.7.57 allows profile stored XSS. |
| CVE-2023-49215 | MEDIUM | 6.1 | 0.4% | Nov 23, 2023 | Usedesk before 1.7.57 allows filter reflected XSS. |
| CVE-2023-49214 | CRITICAL | 9.8 | 0.8% | Nov 23, 2023 | Usedesk before 1.7.57 allows chat template injection. |
| CVE-2023-49213 | HIGH | 8.8 | 2.1% | Nov 23, 2023 | The API endpoints in Ironman PowerShell Universal 3.0.0 through 4.2.0 allow remote attackers to execute arbitrary comman... |
| CVE-2023-47529 | HIGH | 7.5 | 1.0% | Nov 23, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ThemeIsle Cloud Templates & Patterns collect... |
| CVE-2023-47244 | HIGH | 7.5 | 0.6% | Nov 23, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Omnisend Email Marketing for WooCommerce by ... |
| CVE-2023-49210 | CRITICAL | 9.8 | 1.9% | Nov 23, 2023 | The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" ... |
| CVE-2023-5972 | HIGH | 7.8 | 0.3% | Nov 23, 2023 | A null pointer dereference flaw was found in the nft_inner.c functionality of netfilter in the Linux kernel. This issue ... |
| CVE-2023-49208 | CRITICAL | 9.8 | 0.9% | Nov 23, 2023 | scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation... |
| CVE-2023-33202 | MEDIUM | 5.5 | 0.9% | Nov 23, 2023 | Bouncy Castle for Java before 1.73 contains a potential Denial of Service (DoS) issue within the Bouncy Castle org.bounc... |
| CVE-2023-6118 | HIGH | 7.5 | 0.8% | Nov 23, 2023 | Path Traversal: '/../filedir' vulnerability in Neutron IP Camera allows Absolute Path Traversal. This issue affects IP ... |
| CVE-2023-4677 | CRITICAL | 9.8 | 0.5% | Nov 23, 2023 | Cron log backup files contain administrator session IDs. It is trivial for any attacker who can reach the Pandora FMS Co... |
| CVE-2023-41812 | HIGH | 8.8 | 0.6% | Nov 23, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Pandora FMS on all allows Accessing Functionality Not P... |
| CVE-2023-41811 | MEDIUM | 6.1 | 0.3% | Nov 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all... |
| CVE-2023-41810 | MEDIUM | 6.1 | 0.3% | Nov 23, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pandora FMS on all... |
| CVE-2023-41808 | HIGH | 7.5 | 0.5% | Nov 23, 2023 | Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation. This vulnerability allows... |
| CVE-2023-41807 | HIGH | 8.8 | 0.7% | Nov 23, 2023 | Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation. This vulnerability allows... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now