2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26483 | MEDIUM | 5.3 | 1.0% | Mar 3, 2023 | gosaml2 is a Pure Go implementation of SAML 2.0. SAML Service Providers using this library for SAML authentication suppo... |
| CVE-2023-26047 | MEDIUM | 6.1 | 0.5% | Mar 3, 2023 | teler-waf is a Go HTTP middleware that provides teler IDS functionality to protect against web-based attacks. In teler-w... |
| CVE-2023-1170 | MEDIUM | 6.6 | 0.5% | Mar 3, 2023 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376. |
| CVE-2023-26488 | MEDIUM | 6.5 | 0.7% | Mar 3, 2023 | OpenZeppelin Contracts is a library for secure smart contract development. The ERC721Consecutive contract designed for m... |
| CVE-2023-23927 | MEDIUM | 5.4 | 0.8% | Mar 3, 2023 | Craft is a platform for creating digital experiences. When you insert a payload inside a label name or instruction of an... |
| CVE-2023-23313 | MEDIUM | 6.1 | 0.4% | Mar 3, 2023 | Certain Draytek products are vulnerable to Cross Site Scripting (XSS) via the wlogin.cgi script and user_login.cgi scrip... |
| CVE-2023-0968 | MEDIUM | 6.1 | 1.3% | Mar 3, 2023 | The Watu Quiz plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘dn’, 'email', 'points', and ... |
| CVE-2023-20104 | MEDIUM | 6.1 | 0.5% | Mar 3, 2023 | A vulnerability in the file upload functionality of Cisco Webex App for Web could allow an unauthenticated, remote attac... |
| CVE-2023-20069 | MEDIUM | 5.4 | 0.4% | Mar 3, 2023 | A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Netwo... |
| CVE-2023-20062 | MEDIUM | 4.3 | 0.5% | Mar 3, 2023 | Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect s... |
| CVE-2023-20061 | MEDIUM | 6.5 | 0.7% | Mar 3, 2023 | Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect s... |
| CVE-2023-1163 | MEDIUM | 6.5 | 1.8% | Mar 3, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in DrayTek Vigor 2960 1.5.1.4/1.5.1.5 and classified as c... |
| CVE-2023-0578 | MEDIUM | 6.1 | 0.4% | Mar 3, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ASOS Information T... |
| CVE-2023-0577 | MEDIUM | 6.1 | 0.4% | Mar 3, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ASOS Information T... |
| CVE-2023-1160 | MEDIUM | 5.5 | 0.3% | Mar 3, 2023 | Use of Platform-Dependent Third Party Components in GitHub repository cockpit-hq/cockpit prior to 2.4.0. |
| CVE-2023-26473 | MEDIUM | 6.5 | 0.6% | Mar 2, 2023 | XWiki Platform is a generic wiki platform. Starting in version 1.3-rc-1, any user with edit right can execute arbitrary ... |
| CVE-2023-26056 | MEDIUM | 5.4 | 0.6% | Mar 2, 2023 | XWiki Platform is a generic wiki platform. Starting in version 3.0-milestone-1, it's possible to execute a script with t... |
| CVE-2023-26052 | MEDIUM | 5.3 | 0.8% | Mar 2, 2023 | Saleor is a headless, GraphQL commerce platform delivering personalized shopping experiences. Some internal Python excep... |
| CVE-2023-26051 | MEDIUM | 4.3 | 0.8% | Mar 2, 2023 | Saleor is a headless, GraphQL commerce platform delivering personalized shopping experiences. Some internal Python excep... |
| CVE-2023-1157 | MEDIUM | 5.5 | 0.4% | Mar 2, 2023 | A vulnerability, which was classified as problematic, was found in finixbit elf-parser. Affected is the function elf_par... |
| CVE-2023-1156 | MEDIUM | 6.1 | 0.6% | Mar 2, 2023 | A vulnerability classified as problematic was found in SourceCodester Health Center Patient Record Management System 1.0... |
| CVE-2023-0084 | MEDIUM | 6.1 | 28.6% | Mar 2, 2023 | The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via text ar... |
| CVE-2023-26480 | MEDIUM | 5.4 | 0.7% | Mar 2, 2023 | XWiki Platform is a generic wiki platform. Starting in version 12.10, a user without script rights can introduce a store... |
| CVE-2023-26479 | MEDIUM | 6.5 | 1.1% | Mar 2, 2023 | XWiki Platform is a generic wiki platform. Starting in version 6.0, users with write rights can insert well-formed conte... |
| CVE-2023-1155 | MEDIUM | 5.4 | 0.5% | Mar 2, 2023 | The Cost Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the nd_cc_meta_box_cc_price_ic... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now