2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21910 | MEDIUM | 6.5 | 0.6% | Apr 18, 2023 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Analytics (component: Analytics W... |
| CVE-2023-21909 | MEDIUM | 6.5 | 0.6% | Apr 18, 2023 | Vulnerability in the Siebel CRM product of Oracle Siebel CRM (component: UI Framework). Supported versions that are aff... |
| CVE-2023-21908 | MEDIUM | 6 | 0.4% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21907 | MEDIUM | 6 | 0.4% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21906 | MEDIUM | 6.1 | 0.6% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21905 | MEDIUM | 6.1 | 0.6% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21904 | MEDIUM | 5.3 | 0.4% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21903 | MEDIUM | 5.3 | 0.4% | Apr 18, 2023 | Vulnerability in the Oracle Banking Virtual Account Management product of Oracle Financial Services Applications (compon... |
| CVE-2023-21902 | MEDIUM | 4.3 | 0.5% | Apr 18, 2023 | Vulnerability in the Oracle Financial Services Behavior Detection Platform product of Oracle Financial Services Applicat... |
| CVE-2023-22307 | MEDIUM | 5.5 | 0.2% | Apr 18, 2023 | Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.4 allows local attacker to retrieve passwords... |
| CVE-2023-29854 | MEDIUM | 6.1 | 0.4% | Apr 18, 2023 | DirCMS 6.0.0 has a Cross Site Scripting (XSS) vulnerability in the foreground. |
| CVE-2023-1548 | MEDIUM | 5.5 | 0.1% | Apr 18, 2023 | A CWE-269: Improper Privilege Management vulnerability exists that could cause a local user to perform a denial of serv... |
| CVE-2023-28141 | MEDIUM | 6.3 | 0.2% | Apr 18, 2023 | An NTFS Junction condition exists in the Qualys Cloud Agent for Windows platform in versions before 4.8.0.31. Attackers... |
| CVE-2023-2155 | MEDIUM | 4.8 | 0.6% | Apr 18, 2023 | A vulnerability was found in SourceCodester Air Cargo Management System 1.0. It has been declared as problematic. This v... |
| CVE-2023-29774 | MEDIUM | 5.4 | 0.3% | Apr 18, 2023 | Dreamer CMS 3.0.1 is vulnerable to stored Cross Site Scripting (XSS). |
| CVE-2023-2153 | MEDIUM | 6.1 | 0.6% | Apr 18, 2023 | A vulnerability was found in SourceCodester Complaint Management System 1.0 and classified as problematic. Affected by t... |
| CVE-2023-2020 | MEDIUM | 4.3 | 0.4% | Apr 18, 2023 | Insufficient permission checks in the REST API in Tribe29 Checkmk <= 2.1.0p27 and <= 2.2.0b4 (beta) allow unauthorized u... |
| CVE-2023-27092 | MEDIUM | 6.1 | 0.4% | Apr 18, 2023 | Cross Site Scripting vulnerability found in Jbootfly allows attackers to obtain sensitive information via the username p... |
| CVE-2023-2120 | MEDIUM | 6.1 | 0.6% | Apr 18, 2023 | The Thumbnail carousel slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search_term p... |
| CVE-2023-2119 | MEDIUM | 6.1 | 0.6% | Apr 18, 2023 | The Responsive Filterable Portfolio plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search_... |
| CVE-2023-30543 | MEDIUM | 5.7 | 0.4% | Apr 17, 2023 | @web3-react is a framework for building Ethereum Apps . In affected versions the `chainId` may be outdated if the user c... |
| CVE-2023-30541 | MEDIUM | 5.3 | 0.8% | Apr 17, 2023 | OpenZeppelin Contracts is a library for secure smart contract development. A function in the implementation contract may... |
| CVE-2023-30540 | MEDIUM | 4.3 | 0.7% | Apr 17, 2023 | Nextcloud Talk is a chat, video & audio call extension for Nextcloud. In affected versions a user that was added later t... |
| CVE-2023-30536 | MEDIUM | 6.5 | 0.7% | Apr 17, 2023 | slim/psr7 is a PSR-7 implementation for use with Slim 4. In versions prior to 1.6.1 an attacker could sneak in a newline... |
| CVE-2023-28984 | MEDIUM | 5.3 | 0.2% | Apr 17, 2023 | A Use After Free vulnerability in the Layer 2 Address Learning Manager (l2alm) of Juniper Networks Junos OS on QFX Serie... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now