2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-45181MEDIUM6.1IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2023-26280MEDIUM5.3IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request ...
CVE-2023-52334MEDIUM6.5Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. This vulnerability allows rem...
CVE-2023-51648MEDIUM6.5Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remot...
CVE-2023-51647MEDIUM4.7Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacke...
CVE-2023-51646MEDIUM4.7Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attac...
CVE-2023-51645MEDIUM4.7Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
CVE-2023-51643MEDIUM4.7Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers t...
CVE-2023-51642MEDIUM6.3Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2023-51641MEDIUM6.3Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. This vulnerability allo...
CVE-2023-51640MEDIUM4.7Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote atta...
CVE-2023-27609MEDIUM4.8Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NetTantra W...
CVE-2023-6110MEDIUM5.5A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other ex...
CVE-2023-1419MEDIUM5.9A script injection vulnerability was found in the Debezium database connector, where it does not properly sanitize some ...
CVE-2023-20094MEDIUM4.3A vulnerability in Cisco TelePresence CE and RoomOS could allow an unauthenticated, adjacent attacker to view sensitive ...
CVE-2023-20093MEDIUM4.4Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove...
CVE-2023-20092MEDIUM4.4Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove...
CVE-2023-20091MEDIUM5.1A vulnerability in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite...
CVE-2023-20090MEDIUM6.7A vulnerability in Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to elevate privileges t...
CVE-2023-20060MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Collaboration Deployment could allow an unauthentic...
CVE-2023-20039MEDIUM5.5A vulnerability in Cisco IND could allow an authenticated, local attacker to read application data. This vulnerabilit...
CVE-2023-20004MEDIUM4.4Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove...
CVE-2023-4679MEDIUM5.5A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del functi...
CVE-2023-2332MEDIUM4.8A stored Cross-site Scripting (XSS) vulnerability exists in the Conditions tab of Pricing Rules in pimcore/pimcore versi...
CVE-2023-0737MEDIUM6.5wallabag version 2.5.2 contains a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to arbitrarily d...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now