2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-24769MEDIUM5.4Changedetection.io before v0.40.1.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the m...
CVE-2023-22233MEDIUM5.5After Affects versions 23.1 (and earlier), 22.6.3 (and earlier) are affected by an out-of-bounds read vulnerability that...
CVE-2023-22232MEDIUM5.3Adobe Connect versions 11.4.5 (and earlier), 12.1.5 (and earlier) are affected by an Improper Access Control vulnerabili...
CVE-2023-22231MEDIUM5.5Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an out-of-bounds read vulnerability ...
CVE-2023-21620MEDIUM5.5FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds read vulnerability that coul...
CVE-2023-21593MEDIUM5.5Adobe InDesign versions ID18.1 (and earlier) and ID17.4 (and earlier) are affected by a NULL Pointer Dereference vulnera...
CVE-2023-21584MEDIUM5.5FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by a Use After Free vulnerability that could lea...
CVE-2023-21583MEDIUM5.5Adobe Bridge versions 12.0.3 (and earlier) and 13.0.1 (and earlier) are affected by an out-of-bounds read vulnerability ...
CVE-2023-21578MEDIUM5.5Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds read vulnerability that coul...
CVE-2023-21577MEDIUM5.5Photoshop version 23.5.3 (and earlier), 24.1 (and earlier) are affected by an out-of-bounds read vulnerability that coul...
CVE-2023-0482MEDIUM5.5In RESTEasy the insecure File.createTempFile() is used in the DataSourceProvider, FileProvider and Mime4JWorkaround clas...
CVE-2023-24809MEDIUM5.5NetHack is a single player dungeon exploration game. Starting with version 3.6.2 and prior to version 3.6.7, illegal inp...
CVE-2023-23922MEDIUM6.1The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in blog search. A...
CVE-2023-23921MEDIUM6.1The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in some returnurl...
CVE-2023-24785MEDIUM5.5An issue in Giorgio Tani peazip v.9.0.0 allows attackers to cause a denial of service via the End of Archive tag functio...
CVE-2023-24964MEDIUM5.5IBM InfoSphere Information Server 11.7 could allow a local user to obtain sensitive information from a log files. IBM X...
CVE-2023-24369MEDIUM6.1A cross-site scripting (XSS) vulnerability in UJCMS v4.1.3 allows attackers to execute arbitrary web scripts or HTML via...
CVE-2023-22868MEDIUM5.4IBM Aspera Faspex 4.4.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaSc...
CVE-2023-0895MEDIUM4.9The WP Coder – add custom html, css and js code plugin for WordPress is vulnerable to time-based SQL Injection via the ‘...
CVE-2023-24388MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in WpDevArt Booking calendar, Appointment Booking System plugin <= 3.2.3...
CVE-2023-23899MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in HasThemes Extensions For CF7 plugin <= 2.0.8 versions leads to arbitr...
CVE-2023-23586MEDIUM5.5Due to a vulnerability in the io_uring subsystem, it is possible to leak kernel memory information to the user process. ...
CVE-2023-23695MEDIUM5.9 Dell Secure Connect Gateway (SCG) version 5.14.00.12 contains a broken cryptographic algorithm vulnerability. A remote ...
CVE-2023-0880MEDIUM4.3Misinterpretation of Input in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0879MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository btcpayserver/btcpayserver prior to 1.7.12.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now