2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30553 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-30552 | MEDIUM | 6.5 | 0.8% | Apr 19, 2023 | Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that ... |
| CVE-2023-29520 | MEDIUM | 6.5 | 0.5% | Apr 19, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible t... |
| CVE-2023-29515 | MEDIUM | 5.4 | 0.6% | Apr 19, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user who ca... |
| CVE-2023-29513 | MEDIUM | 4.3 | 0.7% | Apr 19, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. If guest has vi... |
| CVE-2023-27043 | MEDIUM | 5.3 | 2.5% | Apr 19, 2023 | The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wron... |
| CVE-2023-30606 | MEDIUM | 4.9 | 0.4% | Apr 18, 2023 | Discourse is an open source platform for community discussion. In affected versions a user logged as an administrator ca... |
| CVE-2023-30538 | MEDIUM | 5.4 | 0.4% | Apr 18, 2023 | Discourse is an open source platform for community discussion. Due to the improper sanitization of SVG files, an attacke... |
| CVE-2023-29196 | MEDIUM | 6.1 | 0.3% | Apr 18, 2023 | Discourse is an open source platform for community discussion. This vulnerability is not exploitable on the default inst... |
| CVE-2023-29002 | MEDIUM | 6.3 | 0.2% | Apr 18, 2023 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. When run in debug mode, Ciliu... |
| CVE-2023-28856 | MEDIUM | 6.5 | 1.0% | Apr 18, 2023 | Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` comman... |
| CVE-2023-26049 | MEDIUM | 5.3 | 1.3% | Apr 18, 2023 | Jetty is a java based web server and servlet engine. Nonstandard cookie parsing in Jetty may allow an attacker to smuggl... |
| CVE-2023-26048 | MEDIUM | 5.3 | 3.3% | Apr 18, 2023 | Jetty is a java based web server and servlet engine. In affected versions servlets with multipart support (e.g. annotate... |
| CVE-2023-25553 | MEDIUM | 6.1 | 0.4% | Apr 18, 2023 | A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabilit... |
| CVE-2023-25551 | MEDIUM | 6.1 | 0.4% | Apr 18, 2023 | A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability ... |
| CVE-2023-25548 | MEDIUM | 6.5 | 0.5% | Apr 18, 2023 | A CWE-863: Incorrect Authorization vulnerability exists that could allow access to device credentials on specific DCE e... |
| CVE-2023-22002 | MEDIUM | 6 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2023-22001 | MEDIUM | 4.6 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2023-22000 | MEDIUM | 4.6 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2023-21998 | MEDIUM | 4.6 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2023-21997 | MEDIUM | 4.3 | 0.5% | Apr 18, 2023 | Vulnerability in the Oracle User Management product of Oracle E-Business Suite (component: Proxy User Delegation). Supp... |
| CVE-2023-21993 | MEDIUM | 6.5 | 0.6% | Apr 18, 2023 | Vulnerability in the Oracle Clinical Remote Data Capture product of Oracle Health Sciences Applications (component: Form... |
| CVE-2023-21992 | MEDIUM | 5.4 | 0.4% | Apr 18, 2023 | Vulnerability in the PeopleSoft Enterprise HCM Human Resources product of Oracle PeopleSoft (component: Administer Workf... |
| CVE-2023-21989 | MEDIUM | 6 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that a... |
| CVE-2023-21986 | MEDIUM | 5.7 | 0.3% | Apr 18, 2023 | Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Native Image). Supported v... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now