2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0015 | MEDIUM | 5.4 | 0.3% | Jan 10, 2023 | In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return... |
| CVE-2023-0013 | MEDIUM | 6.1 | 0.4% | Jan 10, 2023 | The ABAP Keyword Documentation of SAP NetWeaver Application Server - versions 702, 731, 740, 750, 751, 752, 753, 754, 75... |
| CVE-2023-0012 | MEDIUM | 6.7 | 0.2% | Jan 10, 2023 | In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be abl... |
| CVE-2023-22899 | MEDIUM | 5.9 | 0.6% | Jan 10, 2023 | Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive... |
| CVE-2023-22898 | MEDIUM | 6.5 | 0.6% | Jan 10, 2023 | workers/extractor.py in Pandora (aka pandora-analysis/pandora) 1.3.0 allows a denial of service when an attacker submits... |
| CVE-2023-0125 | MEDIUM | 6.1 | 0.5% | Jan 9, 2023 | A vulnerability was found in Control iD Gerencia Web 1.30. It has been declared as problematic. Affected by this vulnera... |
| CVE-2023-0114 | MEDIUM | 5.5 | 0.1% | Jan 7, 2023 | A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unkn... |
| CVE-2023-0112 | MEDIUM | 5.4 | 0.6% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-0111 | MEDIUM | 5.4 | 0.5% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-0110 | MEDIUM | 5.4 | 0.5% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-0108 | MEDIUM | 5.4 | 0.5% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-0107 | MEDIUM | 5.4 | 0.5% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-0106 | MEDIUM | 5.4 | 0.6% | Jan 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0. |
| CVE-2023-22475 | MEDIUM | 6.1 | 0.5% | Jan 6, 2023 | Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulne... |
| CVE-2023-22455 | MEDIUM | 6.1 | 0.5% | Jan 5, 2023 | Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta... |
| CVE-2023-22454 | MEDIUM | 6.1 | 0.6% | Jan 5, 2023 | Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta... |
| CVE-2023-22453 | MEDIUM | 5.3 | 0.6% | Jan 5, 2023 | Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta... |
| CVE-2023-0087 | MEDIUM | 4.8 | 0.6% | Jan 5, 2023 | The Swifty Page Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘spm_plugin_options_pa... |
| CVE-2023-0086 | MEDIUM | 6.5 | 0.3% | Jan 5, 2023 | The JetWidgets for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc... |
| CVE-2023-22622 | MEDIUM | 5.3 | 1.7% | Jan 5, 2023 | WordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security... |
| CVE-2023-0057 | MEDIUM | 6.1 | 0.5% | Jan 5, 2023 | Improper Restriction of Rendered UI Layers or Frames in GitHub repository pyload/pyload prior to 0.5.0b3.dev33. |
| CVE-2023-22466 | MEDIUM | 5.4 | 0.6% | Jan 4, 2023 | Tokio is a runtime for writing applications with Rust. Starting with version 1.7.0 and prior to versions 1.18.4, 1.20.3,... |
| CVE-2023-0055 | MEDIUM | 5.3 | 0.4% | Jan 4, 2023 | Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository pyload/pyload prior to 0.5.0b3.dev32. |
| CVE-2023-22465 | MEDIUM | 5.3 | 0.8% | Jan 4, 2023 | Http4s is a Scala interface for HTTP services. Starting with version 0.1.0 and prior to versions 0.21.34, 0.22.15, 0.23.... |
| CVE-2023-22464 | MEDIUM | 5.4 | 0.6% | Jan 4, 2023 | ViewVC is a browser interface for CVS and Subversion version control repositories. Versions prior to 1.2.3 and 1.1.30 ar... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now