2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31162 | MEDIUM | 4.3 | 0.5% | May 10, 2023 | An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (S... |
| CVE-2023-31160 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31159 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31158 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31157 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31156 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31155 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31154 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer... |
| CVE-2023-31153 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer ... |
| CVE-2023-31151 | MEDIUM | 4.2 | 0.2% | May 10, 2023 | An Improper Certificate Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Contr... |
| CVE-2023-31150 | MEDIUM | 6.5 | 0.5% | May 10, 2023 | A Storing Passwords in a Recoverable Format vulnerability in the Schweitzer Engineering Laboratories Real-Time Automati... |
| CVE-2023-2310 | MEDIUM | 5.3 | 0.5% | May 10, 2023 | A Channel Accessible by Non-Endpoint vulnerability in the Schweitzer Engineering Laboratories SEL Real-Time Automation C... |
| CVE-2023-32076 | MEDIUM | 5.5 | 0.2% | May 10, 2023 | in-toto is a framework to protect supply chain integrity. The in-toto configuration is read from various directories and... |
| CVE-2023-32070 | MEDIUM | 6.1 | 0.7% | May 10, 2023 | XWiki Platform is a generic wiki platform. Prior to version 14.6-rc-1, HTML rendering didn't check for dangerous attribu... |
| CVE-2023-0008 | MEDIUM | 4.4 | 0.5% | May 10, 2023 | A file disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write administrator ... |
| CVE-2023-0007 | MEDIUM | 4.8 | 0.4% | May 10, 2023 | A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software on Panorama appliances enables an authe... |
| CVE-2023-31556 | MEDIUM | 6.5 | 0.7% | May 10, 2023 | podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfDictionary::findKeyPare... |
| CVE-2023-31555 | MEDIUM | 6.5 | 0.6% | May 10, 2023 | podofoinfo 0.10.0 was discovered to contain a segmentation violation via the function PoDoFo::PdfObject::DelayedLoad. |
| CVE-2023-2630 | MEDIUM | 4.8 | 0.6% | May 10, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21. |
| CVE-2023-27562 | MEDIUM | 6.5 | 2.3% | May 10, 2023 | The n8n package 0.218.0 for Node.js allows Directory Traversal. |
| CVE-2023-28411 | MEDIUM | 5.5 | 0.2% | May 10, 2023 | Double free in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to enable informa... |
| CVE-2023-25776 | MEDIUM | 4.4 | 0.2% | May 10, 2023 | Improper input validation in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user to ... |
| CVE-2023-25772 | MEDIUM | 5.5 | 0.2% | May 10, 2023 | Improper input validation in the Intel(R) Retail Edge Mobile Android application before version 3.0.301126-RELEASE may a... |
| CVE-2023-25771 | MEDIUM | 5.5 | 0.1% | May 10, 2023 | Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of ... |
| CVE-2023-25545 | MEDIUM | 6.7 | 0.2% | May 10, 2023 | Improper buffer restrictions in some Intel(R) Server Board BMC firmware before version 2.90 may allow a privileged user ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now