2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-20628MEDIUM6.7In thermal, there is a possible memory corruption due to an uncaught exception. This could lead to local escalation of p...
CVE-2023-20627MEDIUM6.7In pqframework, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2023-20626MEDIUM6.7In msdc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation o...
CVE-2023-20625MEDIUM6.4In adsp, there is a possible double free due to a race condition. This could lead to local escalation of privilege with ...
CVE-2023-20624MEDIUM6.7In vow, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of...
CVE-2023-20623MEDIUM6.4In ion, there is a possible escalation of privilege due to improper locking. This could lead to local escalation of priv...
CVE-2023-20621MEDIUM6.7In tinysys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation o...
CVE-2023-20620MEDIUM4.1In adsp, there is a possible escalation of privilege due to a logic error. This could lead to local escalation of privil...
CVE-2023-27485MEDIUM4.3thmmniii/fbs-core is an open source feedback system for students. In versions prior to 1.5.3 when querying `subresults`,...
CVE-2023-27481MEDIUM4.3Directus is a real-time API and App dashboard for managing SQL database content. In versions prior to 9.16.0 users with ...
CVE-2023-27478MEDIUM6.5libmemcached-awesome is an open source C/C++ client library and tools for the memcached server. `libmemcached` could ret...
CVE-2023-25230MEDIUM4.9A Server-Side Request Forgery (SSRF) in loonflow r2.0.14 allows attackers to force the application to make arbitrary req...
CVE-2023-1257MEDIUM6.8An attacker with physical access to the affected Moxa UC Series devices can initiate a restart of the device and gain ac...
CVE-2023-26953MEDIUM4.8onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Add Administrator...
CVE-2023-1254MEDIUM5.4A vulnerability has been found in SourceCodester Health Center Patient Record Management System 1.0 and classified as pr...
CVE-2023-26955MEDIUM5.4onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Admin Group modul...
CVE-2023-26954MEDIUM5.4onekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the User Group module...
CVE-2023-1245MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1244MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1243MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1242MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1241MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1240MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1239MEDIUM4.8Cross-site Scripting (XSS) - Reflected in GitHub repository answerdev/answer prior to 1.0.6.
CVE-2023-1238MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now