2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-1318MEDIUM5.4Cross-site Scripting (XSS) - Generic in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1317MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1316MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-1315MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6.
CVE-2023-0746MEDIUM6.1The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An ...
CVE-2023-25947MEDIUM5.5The bundle management subsystem within OpenHarmony-v3.1.4 and prior versions has a null pointer reference vulnerability ...
CVE-2023-24465MEDIUM5.5Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a...
CVE-2023-1312MEDIUM4.8Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.19.
CVE-2023-0083MEDIUM5.5The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has...
CVE-2023-27119MEDIUM5.5WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild.
CVE-2023-27116MEDIUM5.5WebAssembly v1.0.29 discovered to contain an abort in CWriter::MangleType.
CVE-2023-27115MEDIUM5.5WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::cat_compute_size.
CVE-2023-27114MEDIUM5.5radare2 v5.8.3 was discovered to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c.
CVE-2023-20064MEDIUM4.6A vulnerability in the GRand Unified Bootloader (GRUB) for Cisco IOS XR Software could allow an unauthenticated attacker...
CVE-2023-1302MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester File Tracker Manager System 1.0. This ...
CVE-2023-1072MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 9.0 before 15.7.8, all versions starting fro...
CVE-2023-0050MEDIUM5.4An issue has been discovered in GitLab affecting all versions starting from 13.7 before 15.7.8, all versions starting fr...
CVE-2023-27484MEDIUM4.9crossplane-runtime is a set of go libraries used to build Kubernetes controllers in Crossplane and its related stacks. I...
CVE-2023-27212MEDIUM6.1A cross-site scripting (XSS) vulnerability in /php-opos/signup.php of Online Pizza Ordering System 1.0 allows attackers ...
CVE-2023-27211MEDIUM6.1A cross-site scripting (XSS) vulnerability in /admin/navbar.php of Online Pizza Ordering System 1.0 allows attackers to ...
CVE-2023-27208MEDIUM6.1A cross-site scripting (XSS) vulnerability in /php-opos/login.php of Online Pizza Ordering System 1.0 allows attackers t...
CVE-2023-27206MEDIUM6.1A cross-site scripting (XSS) vulnerability in /kruxton/navbar.php of Best POS Management System 1.0 allows attackers to ...
CVE-2023-0223MEDIUM5.3An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting fr...
CVE-2023-25814MEDIUM6.5metersphere is an open source continuous testing platform. In versions prior to 2.7.1 a user who has permission to creat...
CVE-2023-0845MEDIUM6.5Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that cau...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now