2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-26209MEDIUM5.3A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiDeceptor 3.1.x and ...
CVE-2023-26208MEDIUM5.3A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiAuthenticator 6.4.x...
CVE-2023-1286MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.19.
CVE-2023-27477MEDIUM4.3wasmtime is a fast and secure runtime for WebAssembly. Wasmtime's code generation backend, Cranelift, has a bug on x86_6...
CVE-2023-24282MEDIUM5.4An arbitrary file upload vulnerability in Poly Trio 8800 7.2.2.1094 allows attackers to execute arbitrary code via a cra...
CVE-2023-24532MEDIUM5.3The ScalarMult and ScalarBaseMult methods of the P256 Curve may return an incorrect result if called with some specific ...
CVE-2023-1278MEDIUM6.1A vulnerability, which was classified as problematic, has been found in IBOS up to 4.5.5. Affected by this issue is some...
CVE-2023-1275MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Phone Shop Sales Managements System 1.0. This vuln...
CVE-2023-26952MEDIUM5.4onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Add Menu module.
CVE-2023-1270MEDIUM5.4Cross-site Scripting in GitHub repository btcpayserver/btcpayserver prior to 1.8.3.
CVE-2023-26950MEDIUM5.4onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Title parameter u...
CVE-2023-24657MEDIUM6.1phpipam v1.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the closeClass parameter...
CVE-2023-1264MEDIUM5.5NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1392.
CVE-2023-1263MEDIUM5.3The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and in...
CVE-2023-1236MEDIUM4.3Inappropriate implementation in Internals in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to spoof the...
CVE-2023-1235MEDIUM6.3Type confusion in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the ren...
CVE-2023-1234MEDIUM4.3Inappropriate implementation in Intents in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker to ...
CVE-2023-1233MEDIUM4.3Insufficient policy enforcement in Resource Timing in Google Chrome prior to 111.0.5563.64 allowed an attacker who convi...
CVE-2023-1232MEDIUM4.3Insufficient policy enforcement in Resource Timing in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to ...
CVE-2023-1231MEDIUM4.3Inappropriate implementation in Autofill in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker to...
CVE-2023-1230MEDIUM4.3Inappropriate implementation in WebApp Installs in Google Chrome on Android prior to 111.0.5563.64 allowed an attacker w...
CVE-2023-1229MEDIUM4.3Inappropriate implementation in Permission prompts in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to ...
CVE-2023-1228MEDIUM4.3Insufficient policy enforcement in Intents in Google Chrome on Android prior to 111.0.5563.64 allowed a remote attacker ...
CVE-2023-1226MEDIUM6.5Insufficient policy enforcement in Web Payments API in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to...
CVE-2023-1225MEDIUM4.3Insufficient policy enforcement in Navigation in Google Chrome on iOS prior to 111.0.5563.64 allowed a remote attacker t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now