2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-1447MEDIUM6.1A vulnerability, which was classified as problematic, has been found in SourceCodester Medicine Tracker System 1.0. Affe...
CVE-2023-1446MEDIUM5.5A vulnerability classified as problematic was found in Watchdog Anti-Virus 1.4.214.0. Affected by this vulnerability is ...
CVE-2023-1445MEDIUM5.5A vulnerability classified as problematic has been found in Filseclab Twister Antivirus 8. Affected is the function 0x80...
CVE-2023-1444MEDIUM6.5A vulnerability was found in Filseclab Twister Antivirus 8. It has been rated as critical. This issue affects the functi...
CVE-2023-27059MEDIUM5.4A cross-site scripting (XSS) vulnerability in the Edit Group function of ChurchCRM v4.5.3 allows attackers to execute ar...
CVE-2023-28113MEDIUM5.9russh is a Rust SSH client and server library. Starting in version 0.34.0 and prior to versions 0.36.2 and 0.37.1, Diffi...
CVE-2023-27494MEDIUM6.1Streamlit, software for turning data scripts into web applications, had a cross-site scripting (XSS) vulnerability in ve...
CVE-2023-23935MEDIUM4.3Discourse is an open-source messaging platform. In versions 3.0.1 and prior on the `stable` branch and versions 3.1.0.be...
CVE-2023-21465MEDIUM5.5Improper access control vulnerability in BixbyTouch prior to version 3.2.02.5 in China models allows untrusted applicati...
CVE-2023-21461MEDIUM5.5Improper authorization vulnerability in AutoPowerOnOffConfirmDialog in Settings prior to SMR Mar-2023 Release 1 allows l...
CVE-2023-21460MEDIUM4.4Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.
CVE-2023-21456MEDIUM5.5Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrar...
CVE-2023-21453MEDIUM5.5Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to p...
CVE-2023-21449MEDIUM5.5Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to acce...
CVE-2023-28109MEDIUM6.5Play With Docker is a browser-based Docker playground. Versions 0.0.2 and prior are vulnerable to domain hijacking. Beca...
CVE-2023-28106MEDIUM4.8Pimcore is an open source data and experience management platform. Prior to version 10.5.19, an attacker can use cross-s...
CVE-2023-28101MEDIUM4.3Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. In versions prior t...
CVE-2023-28100MEDIUM6.5Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1...
CVE-2023-28155MEDIUM6.1The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server tha...
CVE-2023-27711MEDIUM4.8Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via the C...
CVE-2023-27131MEDIUM4.8Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code viathe Po...
CVE-2023-27130MEDIUM4.8Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via an ar...
CVE-2023-1431MEDIUM5.3The WP Simple Shopping Cart plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and ...
CVE-2023-1429MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.19.
CVE-2023-24571MEDIUM6.7 Dell BIOS contains an Improper Input Validation vulnerability. A local authenticated malicious user with administrator ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now