2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28981 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | An Improper Input Validation vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an una... |
| CVE-2023-28980 | MEDIUM | 5.5 | 0.2% | Apr 17, 2023 | A Use After Free vulnerability in the routing protocol daemon of Juniper Networks Junos OS and Junos OS Evolved allows a... |
| CVE-2023-28979 | MEDIUM | 4.7 | 0.3% | Apr 17, 2023 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Networks Junos OS allows ... |
| CVE-2023-28978 | MEDIUM | 5.3 | 0.5% | Apr 17, 2023 | An Insecure Default Initialization of Resource vulnerability in Juniper Networks Junos OS Evolved allows an unauthentica... |
| CVE-2023-28975 | MEDIUM | 4.6 | 0.3% | Apr 17, 2023 | An Unexpected Status Code or Return Value vulnerability in the kernel of Juniper Networks Junos OS allows an unauthentic... |
| CVE-2023-28974 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the bbe-smgd of Juniper Networks Junos OS allow... |
| CVE-2023-28972 | MEDIUM | 6.8 | 0.4% | Apr 17, 2023 | An Improper Link Resolution Before File Access vulnerability in console port access of Juniper Networks Junos OS on NFX ... |
| CVE-2023-28970 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing on the network interfaces of ... |
| CVE-2023-28968 | MEDIUM | 5.3 | 0.6% | Apr 17, 2023 | An Improperly Controlled Sequential Memory Allocation vulnerability in the Juniper Networks Deep Packet Inspection-Decod... |
| CVE-2023-28963 | MEDIUM | 5.3 | 0.5% | Apr 17, 2023 | An Improper Authentication vulnerability in cert-mgmt.php, used by the J-Web component of Juniper Networks Junos OS allo... |
| CVE-2023-28961 | MEDIUM | 5.3 | 0.4% | Apr 17, 2023 | An Improper Handling of Unexpected Data Type vulnerability in IPv6 firewall filter processing of Juniper Networks Junos ... |
| CVE-2023-28959 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS ... |
| CVE-2023-24504 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | Electra Central AC unit – Adjacent attacker may cause the unit to connect to unauthorized update server. |
| CVE-2023-24503 | MEDIUM | 6.5 | 0.2% | Apr 17, 2023 | Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW. |
| CVE-2023-24502 | MEDIUM | 6.5 | 0.2% | Apr 17, 2023 | Electra Central AC unit – The unit opens an AP with an easily calculated password. |
| CVE-2023-24500 | MEDIUM | 6.5 | 0.2% | Apr 17, 2023 | Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW. |
| CVE-2023-1697 | MEDIUM | 6.5 | 0.3% | Apr 17, 2023 | An Improper Handling of Missing Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS ... |
| CVE-2023-30548 | MEDIUM | 4.3 | 0.9% | Apr 17, 2023 | gatsby-plugin-sharp is a plugin for the gatsby framework which exposes functions built on the Sharp image processing lib... |
| CVE-2023-29004 | MEDIUM | 6.5 | 0.9% | Apr 17, 2023 | hap-wi/roxy-wi is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. A Path Traversal vulnerabi... |
| CVE-2023-27525 | MEDIUM | 4.3 | 0.8% | Apr 17, 2023 | An authenticated user with Gamma role authorization could have access to metadata information using non trivial methods ... |
| CVE-2023-25504 | MEDIUM | 6.5 | 0.9% | Apr 17, 2023 | A malicious actor who has been authenticated and granted specific permissions in Apache Superset may use the import data... |
| CVE-2023-1473 | MEDIUM | 6.1 | 0.5% | Apr 17, 2023 | The Slider, Gallery, and Carousel by MetaSlider WordPress plugin 3.29.0 does not sanitise and escape a parameter before ... |
| CVE-2023-1427 | MEDIUM | 4.9 | 0.8% | Apr 17, 2023 | - The Photo Gallery by 10Web WordPress plugin before 1.8.15 did not ensure that uploaded files are kept inside its uploa... |
| CVE-2023-1413 | MEDIUM | 6.1 | 0.5% | Apr 17, 2023 | The WP VR WordPress plugin before 8.2.9 does not sanitise and escape some parameters before outputting them back in the ... |
| CVE-2023-1373 | MEDIUM | 6.1 | 0.5% | Apr 17, 2023 | The W4 Post List WordPress plugin before 2.4.6 does not escape some URLs before outputting them in attributes, leading t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now