2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-53775MEDIUM6.5Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change user passwords by e...
CVE-2023-53773MEDIUM5.3MiniDVBLinux 5.4 contains an unauthenticated vulnerability in the tv_action.sh script that allows remote attackers to ge...
CVE-2023-23729MEDIUM5.4Missing Authorization vulnerability in Brainstorm Force Spectra allows Exploiting Incorrectly Configured Access Control ...
CVE-2023-22675MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Taylor Hawkes WP Fast Cache allows Cross Site Request Forgery.This is...
CVE-2023-53735MEDIUM5.3WEBIGniter 28.7.23 contains a cross-site scripting vulnerability in the user creation process that allows unauthenticate...
CVE-2023-7328MEDIUM5.3Screen SFT DAB 600/C firmware versions up to and including 1.9.3 contain an improper access control on the user manageme...
CVE-2023-7323MEDIUM5.4Nagios Log Server versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Create User function. In...
CVE-2023-7321MEDIUM5.4Nagios Log Server versions prior to 2.1.14 are vulnerable to cross-site scripting (XSS) via the Snapshots Page. Untruste...
CVE-2023-7319MEDIUM5.4Nagios Network Analyzer versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Percentile Calcula...
CVE-2023-7318MEDIUM5.4Nagios XI versions prior to < 2024R1.0.2 are vulnerable to cross-site scripting (XSS) via the Nagios Core Command Expans...
CVE-2023-7316MEDIUM5.4Nagios XI versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Graph Explorer component. Insuff...
CVE-2023-7315MEDIUM5.4Nagios XI versions prior to 5.11.3 are vulnerable to cross-site scripting (XSS) via the Graph Explorer component. Insuff...
CVE-2023-7314MEDIUM5.4Nagios XI versions prior to 5.11.3 are vulnerable to cross-site scripting (XSS) via the Bandwidth Report component. Insu...
CVE-2023-7313MEDIUM5.4Nagios XI versions prior to 5.11.3 are vulnerable to cross-site scripting (XSS) via the Bulk Modifications tool. Insuffi...
CVE-2023-7312MEDIUM4.8Nagios Fusion versions prior to 4.2.0 contain a stored cross-site scripting (XSS) vulnerability when adding or configuri...
CVE-2023-53690MEDIUM4.8Nagios Fusion versions prior to 4.2.0 contain a stored cross-site scripting (XSS) vulnerability in the LDAP/AD authentic...
CVE-2023-53689MEDIUM4.8Nagios Fusion versions prior to 4.2.0 contain a reflected cross-site scripting (XSS) vulnerability in the license key co...
CVE-2023-53688MEDIUM5.4Nagios XI versions prior to 5.11.3 are vulnerable to cross-site scripting (XSS) and cross-site request forgery (CSRF) vi...
CVE-2023-32199MEDIUM4.3A vulnerability has been identified within Rancher Manager, where after removing a custom GlobalRole that gives admini...
CVE-2023-7320MEDIUM5.3The WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 7...
CVE-2023-37749MEDIUM5.3Incorrect access control in the REST API endpoint of HubSpot v1.29441 allows unauthenticated attackers to view users' da...
CVE-2023-37401MEDIUM5.3IBM Aspera Faspex 5.0.0 through 5.0.13.1 uses a cross-domain policy file that includes domains that should not be truste...
CVE-2023-53687MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung_tty: Fix a memory leak in s3c2...
CVE-2023-53686MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/handshake: fix null-ptr-deref in handshake_nl_d...
CVE-2023-53685MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tun: Fix memory leak for detached NAPI queue. syzk...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now