2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1447 | MEDIUM | 6.1 | 0.4% | Mar 17, 2023 | A vulnerability, which was classified as problematic, has been found in SourceCodester Medicine Tracker System 1.0. Affe... |
| CVE-2023-1446 | MEDIUM | 5.5 | 0.3% | Mar 17, 2023 | A vulnerability classified as problematic was found in Watchdog Anti-Virus 1.4.214.0. Affected by this vulnerability is ... |
| CVE-2023-1445 | MEDIUM | 5.5 | 0.4% | Mar 17, 2023 | A vulnerability classified as problematic has been found in Filseclab Twister Antivirus 8. Affected is the function 0x80... |
| CVE-2023-1444 | MEDIUM | 6.5 | 1.3% | Mar 17, 2023 | A vulnerability was found in Filseclab Twister Antivirus 8. It has been rated as critical. This issue affects the functi... |
| CVE-2023-27059 | MEDIUM | 5.4 | 0.4% | Mar 16, 2023 | A cross-site scripting (XSS) vulnerability in the Edit Group function of ChurchCRM v4.5.3 allows attackers to execute ar... |
| CVE-2023-28113 | MEDIUM | 5.9 | 0.6% | Mar 16, 2023 | russh is a Rust SSH client and server library. Starting in version 0.34.0 and prior to versions 0.36.2 and 0.37.1, Diffi... |
| CVE-2023-27494 | MEDIUM | 6.1 | 0.4% | Mar 16, 2023 | Streamlit, software for turning data scripts into web applications, had a cross-site scripting (XSS) vulnerability in ve... |
| CVE-2023-23935 | MEDIUM | 4.3 | 0.5% | Mar 16, 2023 | Discourse is an open-source messaging platform. In versions 3.0.1 and prior on the `stable` branch and versions 3.1.0.be... |
| CVE-2023-21465 | MEDIUM | 5.5 | 0.2% | Mar 16, 2023 | Improper access control vulnerability in BixbyTouch prior to version 3.2.02.5 in China models allows untrusted applicati... |
| CVE-2023-21461 | MEDIUM | 5.5 | 0.1% | Mar 16, 2023 | Improper authorization vulnerability in AutoPowerOnOffConfirmDialog in Settings prior to SMR Mar-2023 Release 1 allows l... |
| CVE-2023-21460 | MEDIUM | 4.4 | 0.2% | Mar 16, 2023 | Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting. |
| CVE-2023-21456 | MEDIUM | 5.5 | 0.2% | Mar 16, 2023 | Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrar... |
| CVE-2023-21453 | MEDIUM | 5.5 | 0.2% | Mar 16, 2023 | Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to p... |
| CVE-2023-21449 | MEDIUM | 5.5 | 0.2% | Mar 16, 2023 | Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to acce... |
| CVE-2023-28109 | MEDIUM | 6.5 | 0.7% | Mar 16, 2023 | Play With Docker is a browser-based Docker playground. Versions 0.0.2 and prior are vulnerable to domain hijacking. Beca... |
| CVE-2023-28106 | MEDIUM | 4.8 | 0.7% | Mar 16, 2023 | Pimcore is an open source data and experience management platform. Prior to version 10.5.19, an attacker can use cross-s... |
| CVE-2023-28101 | MEDIUM | 4.3 | 0.9% | Mar 16, 2023 | Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. In versions prior t... |
| CVE-2023-28100 | MEDIUM | 6.5 | 0.9% | Mar 16, 2023 | Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1... |
| CVE-2023-28155 | MEDIUM | 6.1 | 0.7% | Mar 16, 2023 | The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server tha... |
| CVE-2023-27711 | MEDIUM | 4.8 | 0.7% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via the C... |
| CVE-2023-27131 | MEDIUM | 4.8 | 0.6% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code viathe Po... |
| CVE-2023-27130 | MEDIUM | 4.8 | 0.6% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via an ar... |
| CVE-2023-1431 | MEDIUM | 5.3 | 0.5% | Mar 16, 2023 | The WP Simple Shopping Cart plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and ... |
| CVE-2023-1429 | MEDIUM | 5.4 | 0.4% | Mar 16, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.19. |
| CVE-2023-24571 | MEDIUM | 6.7 | 0.2% | Mar 16, 2023 | Dell BIOS contains an Improper Input Validation vulnerability. A local authenticated malicious user with administrator ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now