2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-23815MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Alan Jackson Multi-column Tag Map plugin <= 17.0...
CVE-2023-1787MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting fr...
CVE-2023-1710MEDIUM5.3A sensitive information disclosure vulnerability in GitLab affecting all versions from 15.0 prior to 15.8.5, 15.9 prior ...
CVE-2023-1417MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 15.9 before 15.9.4, all versions starting fr...
CVE-2023-1167MEDIUM5.3Improper authorization in Gitlab EE affecting all versions from 12.3.0 before 15.8.5, all versions starting from 15.9 be...
CVE-2023-1071MEDIUM4.3An issue has been discovered in GitLab affecting all versions from 15.5 before 15.8.5, all versions starting from 15.9 b...
CVE-2023-0450MEDIUM4.6An issue has been discovered in GitLab affecting all versions starting from 8.1 to 15.8.5, and from 15.9 to 15.9.4, and ...
CVE-2023-24747MEDIUM5.4Jfinal CMS v5.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /system/dict/list...
CVE-2023-1855MEDIUM6.3A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux Ke...
CVE-2023-1582MEDIUM4.7A race problem was found in fs/proc/task_mmu.c in the memory management sub-component in the Linux kernel. This issue ma...
CVE-2023-1098MEDIUM4.9An information disclosure vulnerability has been discovered in GitLab EE/CE affecting all versions starting from 11.5 be...
CVE-2023-0967MEDIUM6.5Bhima version 1.27.0 allows an attacker authenticated with normal user permissions to view sensitive data of other appli...
CVE-2023-0959MEDIUM6.5Bhima version 1.27.0 allows a remote attacker to update the privileges of any account registered in the application via ...
CVE-2023-0944MEDIUM4.3Bhima version 1.27.0 allows an authenticated attacker with regular user permissions to update arbitrary user session dat...
CVE-2023-0842MEDIUM5.3xml2js version 0.4.23 allows an external attacker to edit or add new properties to an object. This is possible because t...
CVE-2023-0523MEDIUM6.1An issue has been discovered in GitLab affecting all versions starting from 15.6 before 15.8.5, 15.9 before 15.9.4, and ...
CVE-2023-0319MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 13.6 before 15.8.5, all versions starting fr...
CVE-2023-20153MEDIUM6.7Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, loc...
CVE-2023-20151MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20150MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20149MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20148MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20147MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20146MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...
CVE-2023-20145MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV32...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now