2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-24567 | MEDIUM | 6.5 | 0.5% | Mar 1, 2023 | Dell NetWorker versions 19.5 and earlier contain 'RabbitMQ' version disclosure vulnerability. A NetWorker server user w... |
| CVE-2023-1117 | MEDIUM | 5.4 | 0.4% | Mar 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18. |
| CVE-2023-1116 | MEDIUM | 5.4 | 0.5% | Mar 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18. |
| CVE-2023-1115 | MEDIUM | 5.4 | 0.6% | Mar 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18. |
| CVE-2023-23984 | MEDIUM | 5.4 | 0.2% | Mar 1, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Bubble Menu – circle floating menu plugin <= 3.0.1 leadin... |
| CVE-2023-23974 | MEDIUM | 5.4 | 0.2% | Mar 1, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Fullworks Quick Event Manager plugin <= 9.7.4 affecting all registrat... |
| CVE-2023-23973 | MEDIUM | 6.5 | 0.2% | Mar 1, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in a3rev Software Contact Us Page – Contact People plugin <= 3.7.0. |
| CVE-2023-1113 | MEDIUM | 4.8 | 0.6% | Mar 1, 2023 | A vulnerability was found in SourceCodester Simple Payroll System 1.0. It has been declared as problematic. Affected by ... |
| CVE-2023-22778 | MEDIUM | 4.8 | 0.5% | Mar 1, 2023 | A vulnerability in the ArubaOS web management interface could allow an authenticated remote attacker to conduct a stored... |
| CVE-2023-22777 | MEDIUM | 6.5 | 0.6% | Mar 1, 2023 | An authenticated information disclosure vulnerability exists in the ArubaOS web-based management interface. Successful e... |
| CVE-2023-22776 | MEDIUM | 4.9 | 0.7% | Mar 1, 2023 | An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of t... |
| CVE-2023-22775 | MEDIUM | 6.5 | 0.6% | Mar 1, 2023 | A vulnerability exists which allows an authenticated attacker to access sensitive information on the ArubaOS command lin... |
| CVE-2023-22774 | MEDIUM | 6.5 | 0.8% | Mar 1, 2023 | Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of the... |
| CVE-2023-22773 | MEDIUM | 6.5 | 0.8% | Mar 1, 2023 | Authenticated path traversal vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of the... |
| CVE-2023-22772 | MEDIUM | 6.5 | 0.7% | Mar 1, 2023 | An authenticated path traversal vulnerability exists in the ArubaOS web-based management interface. Successful exploitat... |
| CVE-2023-20085 | MEDIUM | 6.1 | 0.7% | Mar 1, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2023-20075 | MEDIUM | 6.7 | 0.4% | Mar 1, 2023 | Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrar... |
| CVE-2023-20053 | MEDIUM | 6.1 | 0.5% | Mar 1, 2023 | A vulnerability in the web-based management interface of Cisco Nexus Dashboard could allow an unauthenticated, remote at... |
| CVE-2023-20052 | MEDIUM | 5.3 | 6.7% | Mar 1, 2023 | On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the D... |
| CVE-2023-0952 | MEDIUM | 6.5 | 0.7% | Mar 1, 2023 | Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to ac... |
| CVE-2023-0567 | MEDIUM | 6.2 | 0.9% | Mar 1, 2023 | In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, password_verify() function may accept some inval... |
| CVE-2023-1104 | MEDIUM | 5.4 | 0.6% | Mar 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository flatpressblog/flatpress prior to 1.3. |
| CVE-2023-26608 | MEDIUM | 5.4 | 0.4% | Mar 1, 2023 | SOLDR (System of Orchestration, Lifecycle control, Detection and Response) 1.1.0 allows stored XSS via the module editor... |
| CVE-2023-24045 | MEDIUM | 6.5 | 0.8% | Mar 1, 2023 | In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specify... |
| CVE-2023-25575 | MEDIUM | 6.5 | 0.6% | Feb 28, 2023 | API Platform Core is the server component of API Platform: hypermedia and GraphQL APIs. Resource properties secured with... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now