2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0300 | MEDIUM | 5.4 | 0.5% | Jan 14, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository alfio-event/alf.io prior to 2.0-M4-2301. |
| CVE-2023-0298 | MEDIUM | 6.5 | 0.6% | Jan 14, 2023 | Incorrect Authorization in GitHub repository firefly-iii/firefly-iii prior to 5.8.0. |
| CVE-2023-23589 | MEDIUM | 6.5 | 0.8% | Jan 14, 2023 | The SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not th... |
| CVE-2023-22852 | MEDIUM | 6.5 | 0.3% | Jan 14, 2023 | Tiki through 25.0 allows CSRF attacks that are related to tiki-importer.php and tiki-import_sheet.php. |
| CVE-2023-22471 | MEDIUM | 4.3 | 0.5% | Jan 14, 2023 | Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with N... |
| CVE-2023-22470 | MEDIUM | 6.5 | 0.7% | Jan 14, 2023 | Nextcloud Deck is a kanban style organization tool aimed at personal planning and project organization for teams integra... |
| CVE-2023-21599 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that co... |
| CVE-2023-21598 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InCopy versions 18.0 (and earlier), 17.4 (and earlier) are affected by a Use After Free vulnerability that could l... |
| CVE-2023-21592 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c... |
| CVE-2023-21591 | MEDIUM | 5.5 | 0.3% | Jan 13, 2023 | Adobe InDesign version 18.0 (and earlier), 17.4 (and earlier) are affected by an out-of-bounds read vulnerability that c... |
| CVE-2023-0295 | MEDIUM | 4.8 | 0.5% | Jan 13, 2023 | The Launchpad plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of its settings parameters i... |
| CVE-2023-0294 | MEDIUM | 4.3 | 0.4% | Jan 13, 2023 | The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up t... |
| CVE-2023-0293 | MEDIUM | 4.3 | 0.6% | Jan 13, 2023 | The Mediamatic – Media Library Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capab... |
| CVE-2023-22491 | MEDIUM | 5.4 | 0.6% | Jan 13, 2023 | Gatsby is a free and open source framework based on React that helps developers build websites and apps. The gatsby-tran... |
| CVE-2023-0289 | MEDIUM | 5.4 | 0.5% | Jan 13, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository craigk5n/webcalendar prior to master. |
| CVE-2023-0221 | MEDIUM | 4.4 | 0.2% | Jan 13, 2023 | Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrat... |
| CVE-2023-0287 | MEDIUM | 5.4 | 0.5% | Jan 13, 2023 | A vulnerability was found in ityouknow favorites-web. It has been rated as problematic. Affected by this issue is some u... |
| CVE-2023-0105 | MEDIUM | 6.5 | 0.7% | Jan 13, 2023 | A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correc... |
| CVE-2023-22414 | MEDIUM | 6.5 | 0.3% | Jan 13, 2023 | A Missing Release of Memory after Effective Lifetime vulnerability in Flexible PIC Concentrator (FPC) of Juniper Network... |
| CVE-2023-22410 | MEDIUM | 6.5 | 0.8% | Jan 13, 2023 | A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platfor... |
| CVE-2023-22409 | MEDIUM | 5.5 | 0.2% | Jan 13, 2023 | An Unchecked Input for Loop Condition vulnerability in a NAT library of Juniper Networks Junos OS allows a local authent... |
| CVE-2023-22407 | MEDIUM | 6.5 | 0.3% | Jan 13, 2023 | An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolv... |
| CVE-2023-22406 | MEDIUM | 6.5 | 0.3% | Jan 13, 2023 | A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos ... |
| CVE-2023-22405 | MEDIUM | 6.5 | 0.3% | Jan 13, 2023 | An Improper Preservation of Consistency Between Independent Representations of Shared State vulnerability in the Packet ... |
| CVE-2023-22404 | MEDIUM | 6.5 | 0.6% | Jan 13, 2023 | An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper Networks Junos OS on... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now