2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-1009MEDIUM5.5** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in DrayTek Vigor 2960 1.5.1.4/1.5....
CVE-2023-1008MEDIUM5.5A vulnerability was found in Twister Antivirus 8.17. It has been rated as problematic. This issue affects the function 0...
CVE-2023-0595MEDIUM5.3A CWE-117: Improper Output Neutralization for Logs vulnerability exists that could cause the misinterpretation of log fi...
CVE-2023-1006MEDIUM5.4A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been classified as problematic...
CVE-2023-1002MEDIUM6.5A vulnerability, which was classified as problematic, has been found in MuYuCMS 2.2. This issue affects some unknown pro...
CVE-2023-0998MEDIUM5.3A vulnerability classified as critical has been found in SourceCodester Alphaware Simple E-Commerce System 1.0. This aff...
CVE-2023-22427MEDIUM4.8Stored cross-site scripting vulnerability in Theme switching function of SHIRASAGI v1.16.2 and earlier versions allows a...
CVE-2023-22425MEDIUM5.4Stored cross-site scripting vulnerability in Schedule function of SHIRASAGI v1.16.2 and earlier versions allows a remote...
CVE-2023-0995MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to v2.0.1.
CVE-2023-23296MEDIUM6.5Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefa...
CVE-2023-23920MEDIUM4.2An untrusted search path vulnerability exists in Node.js. <19.6.1, <18.14.1, <16.19.1, and <14.21.3 that could allow an ...
CVE-2023-23916MEDIUM6.5An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the "chained" HTT...
CVE-2023-23915MEDIUM6.5A cleartext transmission of sensitive information vulnerability exists in curl <v7.88.0 that could cause HSTS functional...
CVE-2023-20089MEDIUM6.5A vulnerability in the Link Layer Discovery Protocol (LLDP) feature for Cisco Nexus 9000 Series Fabric Switches in Appli...
CVE-2023-20016MEDIUM6.5A vulnerability in the backup configuration feature of Cisco UCS Manager Software and in the configuration export featur...
CVE-2023-20015MEDIUM6.7A vulnerability in the CLI of Cisco Firepower 4100 Series, Cisco Firepower 9300 Security Appliances, and Cisco UCS 6200,...
CVE-2023-20012MEDIUM4.6A vulnerability in the CLI console login authentication of Cisco Nexus 9300-FX3 Series Fabric Extender (FEX) when used i...
CVE-2023-0597MEDIUM5.5A flaw possibility of memory leak in the Linux kernel cpu_entry_area mapping of X86 CPU data to memory was found in the ...
CVE-2023-0044MEDIUM6.1If the Quarkus Form Authentication session cookie Path attribute is set to `/` then a cross-site attack may be initiated...
CVE-2023-22476MEDIUM4.3Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions prior to 2.25.6, due to insufficient access-l...
CVE-2023-0987MEDIUM5.4A vulnerability classified as problematic was found in SourceCodester Online Pizza Ordering System 1.0. This vulnerabili...
CVE-2023-0869MEDIUM6.1Cross-site scripting in outage/list.htm in multiple versions of OpenNMS Meridian and Horizon allows an attacker access t...
CVE-2023-0868MEDIUM6.1Reflected cross-site scripting in graph results in multiple versions of OpenNMS Meridian and Horizon could allow an atta...
CVE-2023-0867MEDIUM6.1Multiple stored and reflected cross-site scripting vulnerabilities in webapp jsp pages in multiple versions of OpenNMS M...
CVE-2023-0815MEDIUM6.5Potential Insertion of Sensitive Information into Jetty Log Files in multiple versions of OpenNMS Meridian and Horizon c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now