2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1318 | MEDIUM | 5.4 | 1.0% | Mar 10, 2023 | Cross-site Scripting (XSS) - Generic in GitHub repository osticket/osticket prior to v1.16.6. |
| CVE-2023-1317 | MEDIUM | 5.4 | 1.0% | Mar 10, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6. |
| CVE-2023-1316 | MEDIUM | 5.4 | 0.5% | Mar 10, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository osticket/osticket prior to v1.16.6. |
| CVE-2023-1315 | MEDIUM | 5.4 | 1.1% | Mar 10, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository osticket/osticket prior to v1.16.6. |
| CVE-2023-0746 | MEDIUM | 6.1 | 0.4% | Mar 10, 2023 | The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An ... |
| CVE-2023-25947 | MEDIUM | 5.5 | 0.2% | Mar 10, 2023 | The bundle management subsystem within OpenHarmony-v3.1.4 and prior versions has a null pointer reference vulnerability ... |
| CVE-2023-24465 | MEDIUM | 5.5 | 0.2% | Mar 10, 2023 | Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a... |
| CVE-2023-1312 | MEDIUM | 4.8 | 0.4% | Mar 10, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.19. |
| CVE-2023-0083 | MEDIUM | 5.5 | 0.2% | Mar 10, 2023 | The ArKUI framework subsystem within OpenHarmony-v3.1.5 and prior versions, OpenHarmony-v3.0.7 and prior versions has... |
| CVE-2023-27119 | MEDIUM | 5.5 | 0.3% | Mar 10, 2023 | WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::Decompiler::WrapChild. |
| CVE-2023-27116 | MEDIUM | 5.5 | 0.3% | Mar 10, 2023 | WebAssembly v1.0.29 discovered to contain an abort in CWriter::MangleType. |
| CVE-2023-27115 | MEDIUM | 5.5 | 0.3% | Mar 10, 2023 | WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::cat_compute_size. |
| CVE-2023-27114 | MEDIUM | 5.5 | 0.3% | Mar 10, 2023 | radare2 v5.8.3 was discovered to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c. |
| CVE-2023-20064 | MEDIUM | 4.6 | 0.3% | Mar 9, 2023 | A vulnerability in the GRand Unified Bootloader (GRUB) for Cisco IOS XR Software could allow an unauthenticated attacker... |
| CVE-2023-1302 | MEDIUM | 6.1 | 0.6% | Mar 9, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester File Tracker Manager System 1.0. This ... |
| CVE-2023-1072 | MEDIUM | 5.3 | 0.8% | Mar 9, 2023 | An issue has been discovered in GitLab affecting all versions starting from 9.0 before 15.7.8, all versions starting fro... |
| CVE-2023-0050 | MEDIUM | 5.4 | 92.4% | Mar 9, 2023 | An issue has been discovered in GitLab affecting all versions starting from 13.7 before 15.7.8, all versions starting fr... |
| CVE-2023-27484 | MEDIUM | 4.9 | 0.7% | Mar 9, 2023 | crossplane-runtime is a set of go libraries used to build Kubernetes controllers in Crossplane and its related stacks. I... |
| CVE-2023-27212 | MEDIUM | 6.1 | 0.5% | Mar 9, 2023 | A cross-site scripting (XSS) vulnerability in /php-opos/signup.php of Online Pizza Ordering System 1.0 allows attackers ... |
| CVE-2023-27211 | MEDIUM | 6.1 | 0.4% | Mar 9, 2023 | A cross-site scripting (XSS) vulnerability in /admin/navbar.php of Online Pizza Ordering System 1.0 allows attackers to ... |
| CVE-2023-27208 | MEDIUM | 6.1 | 0.5% | Mar 9, 2023 | A cross-site scripting (XSS) vulnerability in /php-opos/login.php of Online Pizza Ordering System 1.0 allows attackers t... |
| CVE-2023-27206 | MEDIUM | 6.1 | 0.4% | Mar 9, 2023 | A cross-site scripting (XSS) vulnerability in /kruxton/navbar.php of Best POS Management System 1.0 allows attackers to ... |
| CVE-2023-0223 | MEDIUM | 5.3 | 0.8% | Mar 9, 2023 | An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting fr... |
| CVE-2023-25814 | MEDIUM | 6.5 | 0.9% | Mar 9, 2023 | metersphere is an open source continuous testing platform. In versions prior to 2.7.1 a user who has permission to creat... |
| CVE-2023-0845 | MEDIUM | 6.5 | 1.0% | Mar 9, 2023 | Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that cau... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now