2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36016 | LOW | 3.4 | 1.3% | Nov 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-34991 | CRITICAL | 9.8 | 28.8% | Nov 14, 2023 | A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWLM version 8.6.... |
| CVE-2023-33304 | MEDIUM | 5.5 | 0.2% | Nov 14, 2023 | A use of hard-coded credentials vulnerability in Fortinet FortiClient Windows 7.0.0 - 7.0.9 and 7.2.0 - 7.2.1 allows an ... |
| CVE-2023-28002 | MEDIUM | 6.7 | 0.2% | Nov 14, 2023 | An improper validation of integrity check value vulnerability [CWE-354] in FortiOS 7.2.0 through 7.2.3, 7.0.0 through 7.... |
| CVE-2023-26205 | HIGH | 8.8 | 0.6% | Nov 14, 2023 | An improper access control vulnerability [CWE-284] in FortiADC automation feature 7.1.0 through 7.1.2, 7.0 all versions,... |
| CVE-2023-6131 | HIGH | 8.8 | 1.0% | Nov 14, 2023 | Code Injection in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4.2. |
| CVE-2023-6130 | HIGH | 8.8 | 1.0% | Nov 14, 2023 | Path Traversal: '\..\filename' in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4.2. |
| CVE-2023-48094 | MEDIUM | 6.1 | 0.3% | Nov 14, 2023 | A cross-site scripting (XSS) vulnerability in CesiumJS v1.111 allows attackers to execute arbitrary code in the context ... |
| CVE-2023-47660 | MEDIUM | 4.8 | 0.4% | Nov 14, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP Wham Product Visibility by Country for WooCommerce ... |
| CVE-2023-47659 | MEDIUM | 5.4 | 0.4% | Nov 14, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Lavacode Lava Directory Manager plugin <= 1.1.34... |
| CVE-2023-6128 | MEDIUM | 5.4 | 0.6% | Nov 14, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4.2. |
| CVE-2023-6127 | MEDIUM | 5.4 | 0.4% | Nov 14, 2023 | Unrestricted Upload of File with Dangerous Type in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4... |
| CVE-2023-6126 | CRITICAL | 9.8 | 0.7% | Nov 14, 2023 | Code Injection in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4.2. |
| CVE-2023-6125 | HIGH | 8.8 | 0.8% | Nov 14, 2023 | Code Injection in GitHub repository salesagility/suitecrm prior to 7.14.2, 7.12.14, 8.4.2. |
| CVE-2023-47262 | MEDIUM | 5.2 | 0.3% | Nov 14, 2023 | The startup process and device configurations of the Abbott ID NOW device, before v7.1, can be interrupted and/or modifi... |
| CVE-2023-6124 | MEDIUM | 4.3 | 0.5% | Nov 14, 2023 | Server-Side Request Forgery (SSRF) in GitHub repository salesagility/suitecrm prior to 7.14.2, 8.4.2, 7.12.14. |
| CVE-2023-48021 | HIGH | 8.8 | 0.4% | Nov 14, 2023 | Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/task/update. |
| CVE-2023-48020 | HIGH | 8.8 | 0.4% | Nov 14, 2023 | Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/task/changeSta... |
| CVE-2023-45684 | HIGH | 7.5 | 0.7% | Nov 14, 2023 | Northern.tech CFEngine Enterprise before 3.21.3 allows SQL Injection. The fixed versions are 3.18.6 and 3.21.3. The earl... |
| CVE-2023-6111 | HIGH | 7.8 | 0.3% | Nov 14, 2023 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2023-46601 | HIGH | 7.5 | 0.5% | Nov 14, 2023 | A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in ma... |
| CVE-2023-46590 | HIGH | 7.5 | 0.7% | Nov 14, 2023 | A vulnerability has been identified in Siemens OPC UA Modelling Editor (SiOME) (All versions < V2.8). Affected products ... |
| CVE-2023-46099 | MEDIUM | 4.8 | 0.4% | Nov 14, 2023 | A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). There is a stored cross-site scripting vul... |
| CVE-2023-46098 | HIGH | 8.8 | 0.6% | Nov 14, 2023 | A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). When accessing the Information Server from... |
| CVE-2023-46097 | HIGH | 8 | 0.4% | Nov 14, 2023 | A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now