2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-2385MEDIUM4.8A vulnerability was found in Netgear SRX5308 up to 4.3.5-3. It has been rated as problematic. This issue affects some un...
CVE-2023-2384MEDIUM4.8A vulnerability was found in Netgear SRX5308 up to 4.3.5-3. It has been declared as problematic. This vulnerability affe...
CVE-2023-2383MEDIUM4.8A vulnerability was found in Netgear SRX5308 up to 4.3.5-3. It has been classified as problematic. This affects an unkno...
CVE-2023-29334MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2023-27864MEDIUM5.4IBM Maximo Asset Management 7.6.1.2 and 7.6.1.3 is vulnerable to HTML injection. A remote attacker could inject maliciou...
CVE-2023-25930MEDIUM5.9IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.1, 11.1, and 11.5 is vulnerable to a denial of serv...
CVE-2023-2382MEDIUM4.8A vulnerability was found in Netgear SRX5308 up to 4.3.5-3 and classified as problematic. Affected by this issue is some...
CVE-2023-2381MEDIUM4.8A vulnerability has been found in Netgear SRX5308 up to 4.3.5-3 and classified as problematic. Affected by this vulnerab...
CVE-2023-2380MEDIUM6.5A vulnerability, which was classified as problematic, was found in Netgear SRX5308 up to 4.3.5-3. Affected is an unknown...
CVE-2023-1526MEDIUM4.6Certain DesignJet and PageWide XL TAA compliant models may have risk of potential information disclosure if the hard dis...
CVE-2023-30853MEDIUM6.5Gradle Build Action allows users to execute a Gradle Build in their GitHub Actions workflow. A vulnerability impacts Git...
CVE-2023-30125MEDIUM6.1EyouCms V1.6.1-UTF8-sp1 is vulnerable to Cross Site Scripting (XSS).
CVE-2023-30123MEDIUM5.4wuzhicms v4.1.0 is vulnerable to Cross Site Scripting (XSS) in the Member Center, Account Settings.
CVE-2023-2372MEDIUM4.8A vulnerability, which was classified as problematic, has been found in SourceCodester Online DJ Management System 1.0. ...
CVE-2023-28821MEDIUM5.3Concrete CMS (previously concrete5) before 9.1 did not have a rate limit for password resets.
CVE-2023-28820MEDIUM5.4Concrete CMS (previously concrete5) before 9.1 is vulnerable to stored XSS in RSS Displayer via the href attribute becau...
CVE-2023-28819MEDIUM5.4Concrete CMS (previously concrete5) versions 8.5.12 and below, 9.0.0 through 9.0.2 is vulnerable to Stored XSS in upload...
CVE-2023-28477MEDIUM5.4Concrete CMS (previously concrete5) versions 8.5.12 and below, and 9.0 through 9.1.3 is vulnerable to stored XSS on API ...
CVE-2023-28476MEDIUM5.4Concrete CMS (previously concrete5) in versions 9.0 through 9.1.3 is vulnerable to Stored XSS on Tags on uploaded files.
CVE-2023-28475MEDIUM6.1Concrete CMS (previously concrete5) versions 8.5.12 and below, and versions 9.0 through 9.1.3 is vulnerable to Reflected...
CVE-2023-28474MEDIUM5.4Concrete CMS (previously concrete5) in versions 9.0 through 9.1.3 is vulnerable to Stored XSS on Saved Presets on search...
CVE-2023-28472MEDIUM5.3Concrete CMS (previously concrete5) versions 8.5.12 and below, and 9.0 through 9.1.3 does not have Secure and HTTP only ...
CVE-2023-28471MEDIUM5.4Concrete CMS (previously concrete5) in versions 9.0 through 9.1.3 is vulnerable to Stored XSS via a container name.
CVE-2023-30024MEDIUM6.6The MagicJack device, a VoIP solution for internet phone calls, contains a hidden NAND flash memory partition allowing u...
CVE-2023-2364MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Resort Reservation System 1.0. Affecte...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now