2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-7271MEDIUM5.5Privilege escalation vulnerability in the NMS module Impact: Successful exploitation of this vulnerability will affect a...
CVE-2023-32471MEDIUM6Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated mali...
CVE-2023-32466MEDIUM5.7Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal...
CVE-2023-7268MEDIUM6.5The ArtPlacer Widget WordPress plugin before 2.21.2 does not have authorisation check in place when deleting widgets, a...
CVE-2023-6708MEDIUM5.4The SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the SVG upload feature in all vers...
CVE-2023-43971MEDIUM6.1Cross Site Scripting vulnerability in ACG-faka v1.1.7 allows a remote attacker to execute arbitrary code via the encode ...
CVE-2023-52291MEDIUM4.7In streampark, the project module integrates Maven's compilation capabilities. The input parameter validation is not str...
CVE-2023-7013MEDIUM4.7Inappropriate implementation in Compositing in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to potent...
CVE-2023-7011MEDIUM6.5Inappropriate implementation in Picture in Picture in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to...
CVE-2023-31456MEDIUM5.4There is an SSRF vulnerability in the Fluid Topics platform that affects versions prior to 4.3, where the server can be ...
CVE-2023-52886MEDIUM6.4In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix race by not overwriting udev->descri...
CVE-2023-41916MEDIUM6.5 In Apache Linkis =1.4.0, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql ...
CVE-2023-39329MEDIUM6.5A flaw was found in OpenJPEG. A resource exhaustion can occur in the opj_t1_decode_cblks function in tcd.c through a cra...
CVE-2023-39327MEDIUM4.3A flaw was found in OpenJPEG. Maliciously constructed pictures can cause the program to enter a large loop and continuou...
CVE-2023-35006MEDIUM5.4IBM Security QRadar EDR 3.12 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which ...
CVE-2023-33860MEDIUM5.3IBM Security QRadar EDR 3.12 does not set the secure attribute on authorization tokens or session cookies. Attackers may...
CVE-2023-33859MEDIUM5.3IBM Security QRadar EDR 3.12 could disclose sensitive information due to an observable login response discrepancy. IBM ...
CVE-2023-6813MEDIUM6.1The Login by Auth0 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘wle’ parameter in all v...
CVE-2023-50181MEDIUM6.5An improper access control vulnerability [CWE-284] in Fortinet FortiADC version 7.4.0 through 7.4.1 and before 7.2.4 al...
CVE-2023-50179MEDIUM5.9An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2 all versions, 7.1 all versions, 7.0 al...
CVE-2023-39328MEDIUM5.5A vulnerability was found in OpenJPEG similar to CVE-2019-6988. This flaw allows an attacker to bypass existing protecti...
CVE-2023-52891MEDIUM5.3A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (A...
CVE-2023-52238MEDIUM4.3A vulnerability has been identified in RUGGEDCOM RST2228 (All versions < V5.9.0), RUGGEDCOM RST2228P (All versions < V5....
CVE-2023-3290MEDIUM5A BOLA vulnerability in POST /customers allows a low privileged user to create a low privileged user (customer) in the s...
CVE-2023-3289MEDIUM6.5A BOLA vulnerability in POST /services allows a low privileged user to create a service for any user in the system (incl...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now