2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45181 | MEDIUM | 6.1 | 0.3% | Nov 25, 2024 | IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2023-26280 | MEDIUM | 5.3 | 0.4% | Nov 25, 2024 | IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request ... |
| CVE-2023-52334 | MEDIUM | 6.5 | 1.9% | Nov 22, 2024 | Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. This vulnerability allows rem... |
| CVE-2023-51648 | MEDIUM | 6.5 | 1.9% | Nov 22, 2024 | Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remot... |
| CVE-2023-51647 | MEDIUM | 4.7 | 2.1% | Nov 22, 2024 | Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacke... |
| CVE-2023-51646 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attac... |
| CVE-2023-51645 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to... |
| CVE-2023-51643 | MEDIUM | 4.7 | 2.1% | Nov 22, 2024 | Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers t... |
| CVE-2023-51642 | MEDIUM | 6.3 | 1.3% | Nov 22, 2024 | Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2023-51641 | MEDIUM | 6.3 | 1.3% | Nov 22, 2024 | Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2023-51640 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote atta... |
| CVE-2023-27609 | MEDIUM | 4.8 | 0.3% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NetTantra W... |
| CVE-2023-6110 | MEDIUM | 5.5 | 0.5% | Nov 17, 2024 | A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other ex... |
| CVE-2023-1419 | MEDIUM | 5.9 | 0.4% | Nov 17, 2024 | A script injection vulnerability was found in the Debezium database connector, where it does not properly sanitize some ... |
| CVE-2023-20094 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | A vulnerability in Cisco TelePresence CE and RoomOS could allow an unauthenticated, adjacent attacker to view sensitive ... |
| CVE-2023-20093 | MEDIUM | 4.4 | 0.2% | Nov 15, 2024 | Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove... |
| CVE-2023-20092 | MEDIUM | 4.4 | 0.2% | Nov 15, 2024 | Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove... |
| CVE-2023-20091 | MEDIUM | 5.1 | 0.2% | Nov 15, 2024 | A vulnerability in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite... |
| CVE-2023-20090 | MEDIUM | 6.7 | 0.2% | Nov 15, 2024 | A vulnerability in Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to elevate privileges t... |
| CVE-2023-20060 | MEDIUM | 6.1 | 0.5% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco Prime Collaboration Deployment could allow an unauthentic... |
| CVE-2023-20039 | MEDIUM | 5.5 | 0.2% | Nov 15, 2024 | A vulnerability in Cisco IND could allow an authenticated, local attacker to read application data. This vulnerabilit... |
| CVE-2023-20004 | MEDIUM | 4.4 | 0.2% | Nov 15, 2024 | Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove... |
| CVE-2023-4679 | MEDIUM | 5.5 | 0.3% | Nov 15, 2024 | A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del functi... |
| CVE-2023-2332 | MEDIUM | 4.8 | 0.4% | Nov 15, 2024 | A stored Cross-site Scripting (XSS) vulnerability exists in the Conditions tab of Pricing Rules in pimcore/pimcore versi... |
| CVE-2023-0737 | MEDIUM | 6.5 | 0.3% | Nov 15, 2024 | wallabag version 2.5.2 contains a Cross-Site Request Forgery (CSRF) vulnerability that allows attackers to arbitrarily d... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now