2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-28981MEDIUM6.5An Improper Input Validation vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an una...
CVE-2023-28980MEDIUM5.5A Use After Free vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved allows a...
CVE-2023-28979MEDIUM4.7An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Networks Junos OS allows ...
CVE-2023-28978MEDIUM5.3An Insecure Default Initialization of Resource vulnerability in Juniper Networks Junos OS Evolved allows an unauthentica...
CVE-2023-28975MEDIUM4.6An Unexpected Status Code or Return Value vulnerability in the kernel of Juniper Networks Junos OS allows an unauthentic...
CVE-2023-28974MEDIUM6.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the bbe-smgd of Juniper Networks Junos OS allow...
CVE-2023-28972MEDIUM6.8An Improper Link Resolution Before File Access vulnerability in console port access of Juniper Networks Junos OS on NFX ...
CVE-2023-28970MEDIUM6.5An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing on the network interfaces of ...
CVE-2023-28968MEDIUM5.3An Improperly Controlled Sequential Memory Allocation vulnerability in the Juniper Networks Deep Packet Inspection-Decod...
CVE-2023-28963MEDIUM5.3An Improper Authentication vulnerability in cert-mgmt.php, used by the J-Web component of Juniper Networks Junos OS allo...
CVE-2023-28961MEDIUM5.3An Improper Handling of Unexpected Data Type vulnerability in IPv6 firewall filter processing of Juniper Networks Junos ...
CVE-2023-28959MEDIUM6.5An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS ...
CVE-2023-24504MEDIUM6.5Electra Central AC unit – Adjacent attacker may cause the unit to connect to unauthorized update server.
CVE-2023-24503MEDIUM6.5Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW.
CVE-2023-24502MEDIUM6.5Electra Central AC unit – The unit opens an AP with an easily calculated password.
CVE-2023-24500MEDIUM6.5Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW.
CVE-2023-1697MEDIUM6.5An Improper Handling of Missing Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS ...
CVE-2023-30548MEDIUM4.3gatsby-plugin-sharp is a plugin for the gatsby framework which exposes functions built on the Sharp image processing lib...
CVE-2023-29004MEDIUM6.5hap-wi/roxy-wi is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. A Path Traversal vulnerabi...
CVE-2023-27525MEDIUM4.3An authenticated user with Gamma role authorization could have access to metadata information using non trivial methods ...
CVE-2023-25504MEDIUM6.5A malicious actor who has been authenticated and granted specific permissions in Apache Superset may use the import data...
CVE-2023-1473MEDIUM6.1The Slider, Gallery, and Carousel by MetaSlider WordPress plugin 3.29.0 does not sanitise and escape a parameter before ...
CVE-2023-1427MEDIUM4.9- The Photo Gallery by 10Web WordPress plugin before 1.8.15 did not ensure that uploaded files are kept inside its uploa...
CVE-2023-1413MEDIUM6.1The WP VR WordPress plugin before 8.2.9 does not sanitise and escape some parameters before outputting them back in the ...
CVE-2023-1373MEDIUM6.1The W4 Post List WordPress plugin before 2.4.6 does not escape some URLs before outputting them in attributes, leading t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now