2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-22402MEDIUM5.9A Use After Free vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-bas...
CVE-2023-22398MEDIUM5.5An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and J...
CVE-2023-22397MEDIUM6.1An Allocation of Resources Without Limits or Throttling weakness in the memory management of the Packet Forwarding Engin...
CVE-2023-22395MEDIUM6.5A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS allows an ...
CVE-2023-22597MEDIUM5.9 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-0258MEDIUM6.1A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been rated as problematic. Affected ...
CVE-2023-22488MEDIUM5.4Flarum is a forum software for building communities. Using the notifications feature, one can read restricted/private co...
CVE-2023-23457MEDIUM5.5A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dynamic() in p_lx_elf.cpp. An attacker with a crafted...
CVE-2023-23456MEDIUM5.5A heap-based buffer overflow issue was discovered in UPX in PackTmt::pack() in p_tmt.cpp file. The flow allows an attack...
CVE-2023-0254MEDIUM4.9The Simple Membership WP user Import plugin for WordPress is vulnerable to SQL Injection via the ‘orderby’ parameter in ...
CVE-2023-0246MEDIUM5.4A vulnerability, which was classified as problematic, was found in earclink ESPCMS P8.21120101. Affected is an unknown f...
CVE-2023-23455MEDIUM5.5atm_tc_enqueue in net/sched/sch_atm.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service be...
CVE-2023-23454MEDIUM5.5cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (sla...
CVE-2023-0042MEDIUM6.1An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.4 prior to 15.5.7, 15.6 prior to 15...
CVE-2023-0227MEDIUM6.5Insufficient Session Expiration in GitHub repository pyload/pyload prior to 0.5.0b3.dev36.
CVE-2023-22492MEDIUM5.9ZITADEL is a combination of Auth0 and Keycloak. RefreshTokens is an OAuth 2.0 feature that allows applications to retrie...
CVE-2023-22487MEDIUM4.3Flarum is a forum software for building communities. Using the mentions feature provided by the flarum/mentions extensio...
CVE-2023-20532MEDIUM5.3Insufficient input validation in the SMU may allow an attacker to improperly lock resources, potentially resulting in a ...
CVE-2023-20527MEDIUM6.5Improper syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory out-of-bounds, po...
CVE-2023-20525MEDIUM6.5Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to read memory outside the b...
CVE-2023-20523MEDIUM5.7TOCTOU in the ASP may allow a physical attacker to write beyond the buffer bounds, potentially leading to a loss of inte...
CVE-2023-22963MEDIUM5.3The personnummer implementation before 3.0.3 for Dart mishandles numbers in which the last four digits match the ^000[0-...
CVE-2023-22958MEDIUM6.1The Syracom Secure Login plugin before 3.1.1.0 for Jira may allow spoofing of 2FA PIN validation via the plugins/servlet...
CVE-2023-22945MEDIUM4.3In the GrowthExperiments extension for MediaWiki through 1.39, the growthmanagementorlist API allows blocked users (bloc...
CVE-2023-21776MEDIUM5.5Windows Kernel Information Disclosure Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now