2023 CVE Vulnerabilities
31,250 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1860 | MEDIUM | 6.1 | 0.4% | Apr 5, 2023 | A vulnerability was found in Keysight IXIA Hawkeye 3.3.16.28. It has been declared as problematic. This vulnerability af... |
| CVE-2023-28069 | MEDIUM | 5.4 | 0.4% | Apr 5, 2023 | Dell Streaming Data Platform prior to 1.4 contains Open Redirect vulnerability. A remote unauthenticated attacker can p... |
| CVE-2023-26536 | MEDIUM | 5.4 | 0.4% | Apr 5, 2023 | Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Jonk @ Follow me Darling Sp*tify Play Button for WordPr... |
| CVE-2023-1857 | MEDIUM | 6.1 | 0.6% | Apr 5, 2023 | A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0 and classified as problematic. Affected... |
| CVE-2023-1853 | MEDIUM | 6.1 | 0.6% | Apr 5, 2023 | A vulnerability, which was classified as problematic, has been found in SourceCodester Online Payroll System 1.0. This i... |
| CVE-2023-1852 | MEDIUM | 6.1 | 0.6% | Apr 5, 2023 | A vulnerability classified as problematic was found in SourceCodester Online Payroll System 1.0. This vulnerability affe... |
| CVE-2023-1851 | MEDIUM | 6.1 | 0.6% | Apr 5, 2023 | A vulnerability classified as problematic has been found in SourceCodester Online Payroll System 1.0. This affects an un... |
| CVE-2023-0382 | MEDIUM | 6.5 | 0.8% | Apr 5, 2023 | User-controlled operations could have allowed Denial of Service in M-Files Server before 23.4.12528.1 due to uncontrol... |
| CVE-2023-0738 | MEDIUM | 6.1 | 0.5% | Apr 4, 2023 | OrangeScrum version 2.0.11 allows an external attacker to obtain arbitrary user accounts from the application. This is p... |
| CVE-2023-0486 | MEDIUM | 6.1 | 0.4% | Apr 4, 2023 | VitalPBX version 3.2.3-8 allows an unauthenticated external attacker to obtain the instance's administrator account via ... |
| CVE-2023-0357 | MEDIUM | 6.1 | 0.7% | Apr 4, 2023 | Helpy version 2.8.0 allows an unauthenticated remote attacker to exploit an XSS stored in the application. This is possi... |
| CVE-2023-28853 | MEDIUM | 6.5 | 1.3% | Apr 4, 2023 | Mastodon is a free, open-source social network server based on ActivityPub Mastodon allows configuration of LDAP for aut... |
| CVE-2023-28842 | MEDIUM | 6.8 | 1.4% | Apr 4, 2023 | Moby) is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container R... |
| CVE-2023-28841 | MEDIUM | 6.8 | 0.7% | Apr 4, 2023 | Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Ru... |
| CVE-2023-1823 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Inappropriate implementation in FedCM in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass naviga... |
| CVE-2023-1822 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Incorrect security UI in Navigation in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform domain ... |
| CVE-2023-1821 | MEDIUM | 6.5 | 0.8% | Apr 4, 2023 | Inappropriate implementation in WebShare in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentiall... |
| CVE-2023-1819 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Out of bounds read in Accessibility in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform an out ... |
| CVE-2023-1817 | MEDIUM | 6.5 | 1.0% | Apr 4, 2023 | Insufficient policy enforcement in Intents in Google Chrome on Android prior to 112.0.5615.49 allowed a remote attacker ... |
| CVE-2023-1816 | MEDIUM | 6.5 | 0.8% | Apr 4, 2023 | Incorrect security UI in Picture In Picture in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potenti... |
| CVE-2023-1814 | MEDIUM | 6.5 | 0.9% | Apr 4, 2023 | Insufficient validation of untrusted input in Safe Browsing in Google Chrome prior to 112.0.5615.49 allowed a remote att... |
| CVE-2023-1813 | MEDIUM | 6.5 | 0.7% | Apr 4, 2023 | Inappropriate implementation in Extensions in Google Chrome prior to 112.0.5615.49 allowed an attacker who convinced a u... |
| CVE-2023-0325 | MEDIUM | 6.1 | 0.7% | Apr 4, 2023 | Uvdesk version 1.1.1 allows an unauthenticated remote attacker to exploit a stored XSS in the application. This is possi... |
| CVE-2023-1840 | MEDIUM | 4.8 | 0.4% | Apr 4, 2023 | The Sp*tify Play Button for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settin... |
| CVE-2023-27492 | MEDIUM | 6.5 | 0.7% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now